Edimax AC1200 Wave 2 Dual-Band Gigabit Router Command Injection Vulnerability Allowing Remote Code Execution

Vulnerability

A command injection vulnerability has been identified in the Edimax AC1200 Wave 2 Dual-Band Gigabit Router, specifically in the BR-6478AC V3 firmware version 1.0.15. The vulnerability arises from the 'groupname' parameter in the '/boafrm/formDiskCreateGroup' handler, where unsanitized input allows for arbitrary command execution on the router's operating system.

Impact

Exploitation of this vulnerability allows remote authenticated attackers to execute arbitrary commands with root privileges on the affected router.

Reproduction

To reproduce this vulnerability, send a POST request to '/boafrm/formDiskCreateGroup' with the 'groupname' parameter containing a crafted payload that includes command injection syntax. The request must be made with a valid 'webuicookie' to simulate an authenticated user. Once the payload is executed, the injected command will be executed with root privileges, allowing for arbitrary command execution on the device.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
4.5
impact
7.5
exploitability
6.2
remediation
0.0
relevance
0.0
threat
7.1
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.