Vulnerabilities
Vulnerable Software
Edimax:  >> Ew-7438rpn Mini Firmware  Security Vulnerabilities
An OS command injection vulnerability exists in the Edimax EW-7438RPn firmware version 1.13 and prior via the mp.asp form handler. The /goform/mp endpoint improperly handles user-supplied input to the command parameter. An authenticated attacker can inject shell commands using shell metacharacters to achieve arbitrary command execution as the root user.
CVSS Score
8.8
EPSS Score
0.003
Published
2025-06-20
An OS command injection vulnerability exists in the Edimax EW-7438RPn Mini firmware version 1.13 and prior via the syscmd.asp form handler. The /goform/formSysCmd endpoint exposes a system command interface through the sysCmd parameter. A remote authenticated attacker can submit arbitrary shell commands directly, resulting in command execution as the root user.
CVSS Score
8.8
EPSS Score
0.008
Published
2025-06-20
Edimax Wi-Fi Extender devices allow goform/formwlencryptvxd CSRF with resultant PSK key disclosure.
CVSS Score
8.8
EPSS Score
0.001
Published
2019-08-08


Contact Us

Shodan ® - All rights reserved