First published: Thu Aug 08 2019(Updated: )
Edimax Wi-Fi Extender devices allow goform/formwlencryptvxd CSRF with resultant PSK key disclosure.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Edimax EW-7438RPn Mini Firmware | ||
Edimax EW-7438RPn Mini v2 | ||
Edimax 7237rpd Firmware | ||
Edimax 7237rpd Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-10863 is classified as a medium severity vulnerability due to the potential for unauthorized access to sensitive information.
To fix CVE-2016-10863, update the firmware of your Edimax Wi-Fi Extender devices to the latest version provided by the manufacturer.
CVE-2016-10863 involves a Cross-Site Request Forgery (CSRF) attack that can lead to the disclosure of the Pre-Shared Key (PSK).
CVE-2016-10863 affects Edimax EW-7438RPN Mini and Edimax 7237RPD devices running vulnerable firmware versions.
Yes, if exploited, CVE-2016-10863 can allow attackers to obtain the Wi-Fi PSK, potentially leading to unauthorized access to the network.