Edimax BR-6478AC Buffer Overflow Vulnerability in L2TP Setup POST Request Handler

Vulnerability

A buffer overflow vulnerability has been identified in the Edimax BR-6478AC router, specifically in version 1.23. The issue arises in the POST request handler within the function formL2TPSetup, where improper handling of the L2TPUserName argument creates the potential for buffer overflow. This vulnerability can be exploited remotely.

Impact

Exploitation of this vulnerability leads to a buffer overflow, which can commonly result in arbitrary code execution or causing the device to crash.

Added: May 26, 2026, 7:55 PM
Updated: May 26, 2026, 7:55 PM

Vulnerability Rating

Custom Algorithm
spread
4.5
impact
0.6
exploitability
9.1
remediation
0.0
relevance
9.4
threat
6.4
urgency
2.9
incentive
8.3

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.