Edimax

Ew-7438rpn Mini

7 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.04%
  • Veröffentlicht 05.02.2026 16:13:42
  • Zuletzt bearbeitet 18.02.2026 18:09:12

Edimax EW-7438RPn-v3 Mini 1.27 is vulnerable to cross-site request forgery (CSRF) that can lead to command execution. An attacker can trick an authenticated user into submitting a crafted form to the /goform/mp endpoint, resulting in arbitrary comman...

Exploit
  • EPSS 0.14%
  • Veröffentlicht 05.02.2026 16:13:42
  • Zuletzt bearbeitet 18.02.2026 17:57:00

Edimax EW-7438RPn-v3 Mini 1.27 allows unauthenticated attackers to access the /wizard_reboot.asp page in unsetup mode, which discloses the Wi-Fi SSID and security key. Attackers can retrieve the wireless password by sending a GET request to this endp...

Exploit
  • EPSS 0.54%
  • Veröffentlicht 05.02.2026 16:13:32
  • Zuletzt bearbeitet 18.02.2026 18:09:41

Edimax EW-7438RPn-v3 Mini 1.27 contains a remote code execution vulnerability that allows unauthenticated attackers to execute arbitrary commands through the /goform/mp endpoint. Attackers can exploit the vulnerability by sending crafted POST request...

Exploit
  • EPSS 0.06%
  • Veröffentlicht 03.02.2026 22:16:26
  • Zuletzt bearbeitet 20.02.2026 15:45:39

Edimax EW-7438RPn 1.13 contains an information disclosure vulnerability that exposes WiFi network configuration details through the wlencrypt_wiz.asp file. Attackers can access the script to retrieve sensitive information including WiFi network name ...

Exploit
  • EPSS 0.02%
  • Veröffentlicht 03.02.2026 22:16:25
  • Zuletzt bearbeitet 20.02.2026 15:37:23

Edimax EW-7438RPn 1.13 contains a cross-site request forgery vulnerability in the MAC filtering configuration interface. Attackers can craft malicious web pages to trick users into adding unauthorized MAC addresses to the device's filtering rules wit...

Exploit
  • EPSS 2.07%
  • Veröffentlicht 20.06.2025 18:38:15
  • Zuletzt bearbeitet 20.11.2025 22:15:55

An OS command injection vulnerability exists in the Edimax EW-7438RPn Mini firmware version 1.13 and prior via the syscmd.asp form handler. The /goform/formSysCmd endpoint exposes a system command interface through the sysCmd parameter. A remote auth...

Exploit
  • EPSS 0.91%
  • Veröffentlicht 20.06.2025 18:38:02
  • Zuletzt bearbeitet 20.11.2025 22:15:55

An OS command injection vulnerability exists in the Edimax EW-7438RPn firmware version 1.13 and prior via the mp.asp form handler. The /goform/mp endpoint improperly handles user-supplied input to the command parameter. An authenticated attacker can ...