CVE-2026-19961

9.9

Edimax · EW-7478APC

A buffer overflow vulnerability in the Edimax EW-7478APC router allows remote attackers to execute arbitrary code via a crafted SSID parameter.

Executive summary

A critical buffer overflow vulnerability in the Edimax EW-7478APC router enables remote code execution, posing an immediate risk to device integrity.

Vulnerability

The vulnerability resides in the formWlSiteSurvey function within the /goform/formWlSiteSurvey file. By manipulating the selSSID argument, an attacker can trigger a buffer overflow, potentially leading to remote code execution.

Business impact

Exploitation of this vulnerability grants an attacker complete control over the affected network device. Given the CVSS score of 9.9, this creates a critical risk of network interception, unauthorized access to internal resources, and the potential for the device to be used as a pivot point for further lateral movement within the network.

Remediation

Immediate Action: Apply the latest firmware update provided by Edimax. If no update is available, restrict management access to the device to trusted internal networks only.

Proactive Monitoring: Monitor network traffic for unusual outbound connections or signs of device instability that may suggest exploitation.

Compensating Controls: Disable wireless site survey features if not required, and place the management interface on a separate, isolated VLAN to prevent remote access.

Exploitation status

Public Exploit Available: Unknown.

Analyst recommendation

This is a critical vulnerability that allows for full remote compromise of the router. Administrators should verify the firmware version and apply updates immediately. If patching is not possible, segment the device from the internet to prevent remote exploitation.

More Edimax CVEs