Edimax EW-7438RPn Information Disclosure Vulnerability

Vulnerability

An information disclosure vulnerability has been identified in the Edimax EW-7438RPn Mini Wi-Fi range extender, specifically in version 1.13. The issue arises in the wlencrypt_wiz.asp file, where sensitive Wi-Fi network configuration details are exposed. Attackers can access this file to retrieve information such as the Wi-Fi network name and the plaintext password stored in the device's configuration variables.

Impact

Exploitation of this vulnerability allows unauthorized access to sensitive Wi-Fi network information, including the network name and password, which could be used to gain unauthorized access to the Wi-Fi network.

Reproduction

To reproduce this vulnerability, first set up the Edimax EW-7438RPn Mini extender. After the setup is complete, access the wlencrypt_wiz.asp file. This file will disclose information such as the Wi-Fi password, along with other configuration details.

Added: Feb 3, 2026, 10:34 PM
Updated: Feb 3, 2026, 10:34 PM

Vulnerability Rating

Custom Algorithm
spread
0.3
impact
2.5
exploitability
6.2
remediation
0.0
relevance
2.7
threat
6.4
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.