CVE-2026-12806

Edimax · BR-6478AC V2

A critical security vulnerability has been identified in the Edimax BR-6478AC V2 router, potentially allowing for unauthorized device control.

Executive summary

The Edimax BR-6478AC V2 router is impacted by a high-severity vulnerability that could allow attackers to gain unauthorized control over the network device.

Vulnerability

This vulnerability affects the BR-6478AC V2 router model. Given the nature of network hardware, such flaws often involve authentication bypass or command injection, which can lead to complete device compromise.

Business impact

With a CVSS score of 8.8, this vulnerability poses a severe risk to network perimeter security. Compromise of the router could allow an attacker to intercept traffic, redirect users, or gain a foothold within the internal network, leading to widespread data exposure.

Remediation

Immediate Action: Update the device firmware to the latest version provided by Edimax to address the vulnerability.

Proactive Monitoring: Monitor router management logs for unauthorized login attempts or configuration changes made outside of authorized maintenance windows.

Compensating Controls: Disable remote management interfaces on the router and ensure that administrative access is restricted to a dedicated, secure management VLAN.

Exploitation status

Public Exploit Available: false

Analyst recommendation

Network administrators must treat this router vulnerability with extreme urgency. Given that the device serves as a perimeter gateway, immediate firmware updates are required to prevent potential network-wide exploitation.