HIGH
Edimax BR-6675nD POST Request formPPPoESetup buffer overflow
Published May 24, 2026
8.7
HIGHCVSS 4.0
EPSS 0.80%
Description
A vulnerability was detected in Edimax BR-6675nD 1.12. Affected by this vulnerability is the function formPPPoESetup of the file /goform/formPPPoESetup of the component POST Request Handler. Performing a manipulation of the argument pppUserName results in buffer overflow. The attack may be initiated remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Affected products
-
- Version 1.12StatusaffectedConstraints-
- Version
No data.
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (2)
References (4)
- https://lavender-bicycle-a5a.notion.site/EDIMAX-BR-6675nD-formPPPoESetup-34b53a41781f803faf50d4caf940d2dc?source=copy_link exploit
- https://vuldb.com/submit/811559 third-party-advisory
- https://vuldb.com/vuln/365344 vdb-entrytechnical-description
- https://vuldb.com/vuln/365344/cti signaturepermissions-required
| Link | Providers | Tags |
|---|---|---|
| https://lavender-bicycle-a5a.notion.site/EDIMAX-BR-6675nD-formPPPoESetup-34b53a41781f803faf50d4caf940d2dc?source=copy_link | exploit | |
| https://vuldb.com/submit/811559 | third-party-advisory | |
| https://vuldb.com/vuln/365344 | vdb-entrytechnical-description | |
| https://vuldb.com/vuln/365344/cti | signaturepermissions-required |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner VulDB
Published May 24, 2026
Updated Jun 2, 2026
Reserved May 23, 2026
Link CVE-2026-9381
CISA Vulnrichment
Updated May 26, 2026