CVE-2020-37097
HIGHEdimax EW-7438RPn <1.13 - Info Disclosure
Title source: llmDescription
Edimax EW-7438RPn 1.13 contains an information disclosure vulnerability that exposes WiFi network configuration details through the wlencrypt_wiz.asp file. Attackers can access the script to retrieve sensitive information including WiFi network name and plaintext password stored in device configuration variables.
Exploits (1)
References (3)
Scores
CVSS v3
7.5
EPSS
0.0004
EPSS Percentile
12.4%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Classification
CWE
CWE-522
Status
published
Affected Products (1)
edimax/ew-7438rpn_mini_firmware
Timeline
Published
Feb 03, 2026
Tracked Since
Feb 18, 2026