HIGH
Edimax BR-6675nD POST Request formPPTPSetup buffer overflow
Published May 24, 2026
8.7
HIGHCVSS 4.0
EPSS 0.80%
Description
A flaw has been found in Edimax BR-6675nD 1.12. Affected by this issue is the function formPPTPSetup of the file /goform/formPPTPSetup of the component POST Request Handler. Executing a manipulation of the argument pptpUserName can lead to buffer overflow. The attack may be launched remotely. The exploit has been published and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Affected products
-
Affected
- 1.12
No data.
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (2)
References (5)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-31596 Advisory
- https://lavender-bicycle-a5a.notion.site/EDIMAX-BR-6675nD-formPPTPSetup-34b53a41781f80e6ab7df78a28ffe568?source=copy_link exploit
- https://vuldb.com/submit/811560 third-party-advisory
- https://vuldb.com/vuln/365345 vdb-entrytechnical-description
- https://vuldb.com/vuln/365345/cti signaturepermissions-required
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-31596 | Advisory | |
| https://lavender-bicycle-a5a.notion.site/EDIMAX-BR-6675nD-formPPTPSetup-34b53a41781f80e6ab7df78a28ffe568?source=copy_link | exploit | |
| https://vuldb.com/submit/811560 | third-party-advisory | |
| https://vuldb.com/vuln/365345 | vdb-entrytechnical-description | |
| https://vuldb.com/vuln/365345/cti | signaturepermissions-required |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner VulDB
Published May 24, 2026
Updated May 26, 2026
Reserved May 23, 2026
Link CVE-2026-9382
CISA Vulnrichment
Updated May 26, 2026
Red Hat
No data
GitHub
No data