Edimax EW-7438RPn
cpe:2.3:h:edimax:ew-7438rpn_mini:*:*:*:*:*:*:*, +3 more
- 1.13
An information disclosure vulnerability has been identified in the Edimax EW-7438RPn Mini Wi-Fi range extender, specifically in version 1.13. The issue arises in the wlencrypt_wiz.asp file, where sensitive Wi-Fi network configuration details are exposed. Attackers can access this file to retrieve information such as the Wi-Fi network name and the plaintext password stored in the device's configuration variables.
Exploitation of this vulnerability allows unauthorized access to sensitive Wi-Fi network information, including the network name and password, which could be used to gain unauthorized access to the Wi-Fi network.
To reproduce this vulnerability, first set up the Edimax EW-7438RPn Mini extender. After the setup is complete, access the wlencrypt_wiz.asp file. This file will disclose information such as the Wi-Fi password, along with other configuration details.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.