Edimax BR-6478AC
cpe:2.3:h:edimax:br-6478ac:*:*:*:*:*:*:*, +1 more
- 1.23
A command injection vulnerability has been identified in the Edimax BR-6478AC router, specifically in version 1.23. The issue arises in the POST request handler, within the 'formAccept' function, where improper validation of the 'submit-url' argument allows for command injection. This vulnerability can be exploited remotely, and public exploits are available.
Exploitation of this vulnerability allows for command injection, where an attacker can execute arbitrary commands on the device.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.