A vulnerability was detected in Edimax EW-7438RPn 1.31. This affects the function formHwSet of the file /goform/formHwSet. The manipulation of the argument Anntena/Mcs/regDomain/nic0Addr/nic1Addr/wlanAddr/wanAddr/wlanSSID/wlanChan/initgain/txcck/txofdm/submit-url results in stack-based buffer overflow. The attack can be executed remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Metrics
Affected Vendors & Products
References
History
Mon, 25 May 2026 05:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was detected in Edimax EW-7438RPn 1.31. This affects the function formHwSet of the file /goform/formHwSet. The manipulation of the argument Anntena/Mcs/regDomain/nic0Addr/nic1Addr/wlanAddr/wanAddr/wlanSSID/wlanChan/initgain/txcck/txofdm/submit-url results in stack-based buffer overflow. The attack can be executed remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | Edimax EW-7438RPn formHwSet stack-based overflow | |
| First Time appeared |
Edimax
Edimax ew-7438rpn |
|
| Weaknesses | CWE-119 CWE-121 |
|
| CPEs | cpe:2.3:a:edimax:ew-7438rpn:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Edimax
Edimax ew-7438rpn |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-05-25T04:30:09.505Z
Reserved: 2026-05-24T06:59:18.177Z
Link: CVE-2026-9426
No data.
No data.
No data.
OpenCVE Enrichment
No data.