GHSA-cvrm-g72g-prqfHighCVSS 8.8
A vulnerability was identified in Edimax BR-6478AC 1.23. The impacted element is the function...
🔗 CVE IDs covered (1)
📋 Description
A vulnerability was identified in Edimax BR-6478AC 1.23. The impacted element is the function formWanTcpipSetup of the file /goform/formWanTcpipSetup of the component POST Request Handler. Such manipulation of the argument pppUserName leads to stack-based buffer overflow. The attack may be performed from remote. The exploit is publicly available and might be used.
🔗 References (6)
- https://nvd.nist.gov/vuln/detail/CVE-2026-10165
- https://lavender-bicycle-a5a.notion.site/EDIMAX-BR6478ACV2-formWanTcpipSetup-34b53a41781f8013a811da2b3c8b7aa3?source=copy_link
- https://vuldb.com/submit/818601
- https://vuldb.com/vuln/367419
- https://vuldb.com/vuln/367419/cti
- https://github.com/advisories/GHSA-cvrm-g72g-prqf