← Back to CVE search

CVE-2026-8234

EFM ipTIME

Description

A security vulnerability has been detected in EFM ipTIME A8004T 14.18.2. This vulnerability affects the function formWifiBasicSet of the file /goform/WifiBasicSet. The manipulation of the argument security_5g leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS 8.8EPSS 0.481%Risk 0.92
View source
Published
2026-05-10 07:16:08
Affected versions
==14.18.2
Type
Firmware
Last modified
2026-07-24 07:10:00
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H