HIGH
Edimax BR-6478AC POST Request formiNICSiteSurvey buffer overflow
Published May 25, 2026
8.7
HIGHCVSS 4.0
EPSS 0.80%
Description
A weakness has been identified in Edimax BR-6478AC 1.23. This affects the function formiNICSiteSurvey of the file /goform/formiNICSiteSurvey of the component POST Request Handler. Executing a manipulation of the argument selSSID can lead to buffer overflow. The attack can be launched remotely. The exploit has been made available to the public and could be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.
Affected products
-
Affected
- 1.23
No data.
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (2)
References (5)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-31653 Advisory
- https://lavender-bicycle-a5a.notion.site/EDIMAX-BR6478ACV2-formiNICSiteSurvey-34b53a41781f8083b8dff46a2f02978f?source=copy_link exploit
- https://vuldb.com/submit/818451 third-party-advisory
- https://vuldb.com/vuln/365423 vdb-entrytechnical-description
- https://vuldb.com/vuln/365423/cti signaturepermissions-required
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-31653 | Advisory | |
| https://lavender-bicycle-a5a.notion.site/EDIMAX-BR6478ACV2-formiNICSiteSurvey-34b53a41781f8083b8dff46a2f02978f?source=copy_link | exploit | |
| https://vuldb.com/submit/818451 | third-party-advisory | |
| https://vuldb.com/vuln/365423 | vdb-entrytechnical-description | |
| https://vuldb.com/vuln/365423/cti | signaturepermissions-required |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner VulDB
Published May 25, 2026
Updated May 28, 2026
Reserved May 24, 2026
Link CVE-2026-9442
CISA Vulnrichment
Updated May 28, 2026
Red Hat
No data
GitHub
No data