← Back to CVE search

CVE-2026-9382

Edimax BR-6675nD

Description

A flaw has been found in Edimax BR-6675nD 1.12. Affected by this issue is the function formPPTPSetup of the file /goform/formPPTPSetup of the component POST Request Handler. Executing a manipulation of the argument pptpUserName can lead to buffer overflow. The attack may be launched remotely. The exploit has been published and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS 8.8EPSS 0.542%Risk 0.92
View source
Published
2026-05-24 13:16:13
Affected versions
<= 1.12
Type
Firmware
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H