Vulnerability Details CVE-2024-48418
In Edimax AC1200 Wi-Fi 5 Dual-Band Router BR-6476AC 1.06, the request /goform/fromSetDDNS does not properly handle special characters in any of user provided parameters, allowing an attacker with access to the web interface to inject and execute arbitrary shell commands.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 6.0%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2024-48418
-
cpe:2.3:h:edimax:br-6476ac:-
-
cpe:2.3:o:edimax:br-6476ac_firmware:1.06