Vendor
Edimax BR-6478AC Stack-Based Buffer Overflow Vulnerability (CVE-2026-10125)
2 rules 1 TTP 1 CVEA stack-based buffer overflow vulnerability (CVE-2026-10125) exists in the formPPPoESetup function of the /goform/formPPPoESetup file in Edimax BR-6478AC version 1.23, allowing a remote attacker to execute arbitrary code by manipulating the pppUserName argument in a POST request; a public exploit is available.
Edimax EW-7438RPn Stack-Based Buffer Overflow Vulnerability (CVE-2026-9481)
2 rules 1 TTP 1 CVEA stack-based buffer overflow vulnerability (CVE-2026-9481) exists in the formStats function of the /goform/formStats file in Edimax EW-7438RPn version 1.31, allowing a remote attacker to execute arbitrary code by manipulating the submit-url argument.
Edimax EW-7438RPn Stack-Based Buffer Overflow Vulnerability (CVE-2026-9463)
2 rules 1 TTP 1 CVEEdimax EW-7438RPn version 1.31 is vulnerable to a stack-based buffer overflow in the formLicence function of the /goform/formLicence file, allowing remote attackers to execute arbitrary code by manipulating the submit-url argument; a public exploit is available.
Edimax EW-7438RPn Stack-Based Buffer Overflow Vulnerability (CVE-2026-9462)
1 rule 1 CVEEdimax EW-7438RPn version 1.31 is vulnerable to a stack-based buffer overflow (CVE-2026-9462) in the `formWpsProxyEnable` function of `/goform/formWpsProxyEnable`, triggered by manipulating the `submit-url` argument, allowing remote attackers to execute arbitrary code; a public exploit is available.
Edimax EW-7438RPn Stack-Based Buffer Overflow Vulnerability (CVE-2026-9459)
2 rules 1 TTP 1 CVEA stack-based buffer overflow vulnerability (CVE-2026-9459) exists in the formConnectionSetting function of /goform/formConnectionSetting in Edimax EW-7438RPn 1.31, allowing a remote attacker to execute arbitrary code by manipulating the max_Conn/timeOut arguments, with a public exploit available.
CVE-2026-9426 - Edimax EW-7438RPn Stack-Based Buffer Overflow
2 rules 1 TTP 1 CVEA stack-based buffer overflow vulnerability exists in Edimax EW-7438RPn version 1.31 in the formHwSet function of the /goform/formHwSet file, which can be triggered by manipulating the Anntena/Mcs/regDomain/nic0Addr/nic1Addr/wlanAddr/wanAddr/wlanSSID/wlanChan/initgain/txcck/txofdm/submit-url argument, potentially leading to remote code execution.
Edimax BR-6675nD Remote Buffer Overflow Vulnerability (CVE-2026-9381)
2 rules 2 TTPs 1 CVEA remote buffer overflow vulnerability (CVE-2026-9381) exists in the `formPPPoESetup` function of the Edimax BR-6675nD 1.12 router's web management interface, allowing unauthenticated attackers to potentially execute arbitrary code by manipulating the `pppUserName` argument in a POST request.
Edimax BR-6428NS Buffer Overflow Vulnerability (CVE-2026-9294)
2 rules 1 TTP 1 CVEA buffer overflow vulnerability (CVE-2026-9294) exists in the formWanTcpipSetup function of the /goform/formWanTcpipSetup file in Edimax BR-6428NS 1.10, which can be triggered by a remote attacker manipulating the pppUserName argument via a POST request, potentially leading to arbitrary code execution.
Edimax BR-6428nC Buffer Overflow Vulnerability (CVE-2026-7684)
2 rules 1 TTP 1 CVEA remote buffer overflow vulnerability exists in Edimax BR-6428nC devices up to version 1.16 via manipulation of the pptpDfGateway argument in the /goform/setWAN file, potentially allowing for arbitrary code execution.
Edimax BR-6208AC Buffer Overflow Vulnerability
2 rules 1 TTP 1 CVEA buffer overflow vulnerability exists in Edimax BR-6208AC devices (<= 1.02) via manipulation of the pptpDfGateway argument in the /goform/setWAN endpoint, potentially allowing remote attackers to execute arbitrary code.