Edimax Vulnerabilities and Affected Products
Vulnerabilities associated with Edimax EW-7438RPn Mini.
Products
Clear product- EW-7438RPn26 vulnerabilities
- BR-6675nD12 vulnerabilities
- BR-6478AC11 vulnerabilities
- EW-7478APC9 vulnerabilities
- BR-6208AC7 vulnerabilities
- BR-6428NS7 vulnerabilities
- BR-6478AC V25 vulnerabilities
- BR-6478AC V33 vulnerabilities
- BR-6288ACL2 vulnerabilities
- BR-6428nC2 vulnerabilities
- Edimax EW-7438RPn Mini2 vulnerabilities
- BR-6228NC1 vulnerability
- BR-6258n1 vulnerability
- IC-5150W1 vulnerability
- IC-6220DC1 vulnerability
- IC-7100 IP Camera1 vulnerability
- re11s_firmware1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2025-34029CRITICAL | Edimax EW-7438RPn Mini OS Command Injection via syscmd.aspAn OS command injection vulnerability exists in the Edimax EW-7438RPn Mini firmware version 1.13 and prior via the syscmd.asp form handler. The /goform/formSysCmd endpoint exposes a system command interface through the sysCmd parameter. A remote authenticated attacker can submit arbitrary shell commands directly, resulting in command execution as the root user. Exploitation evidence was observed by the Shadowserver Foundation on 2024-09-14 UTC. CWE-78Jun 20, 2025 | CVSS9.4v4.0 | EPSS3.47% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2025-34024CRITICAL | Edimax EW-7438RPn Mini OS Command Injection via mp.aspAn OS command injection vulnerability exists in the Edimax EW-7438RPn firmware version 1.13 and prior via the mp.asp form handler. The /goform/mp endpoint improperly handles user-supplied input to the command parameter. An authenticated attacker can inject shell commands using shell metacharacters to achieve arbitrary command execution as the root user. Exploitation evidence was observed by the Shadowserver Foundation on 2024-09-14 UTC. | CVSS9.4v4.0 | EPSS3.86% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |