CVE-2025-28143: Command Injection
Published Apr 15, 2025
·Updated
Edimax AC1200 Wave 2 Dual-Band Gigabit Router BR-6478AC V31.0.15 was discovered to contain a command injection vulnerability via the groupname at the /boafrm/formDiskCreateGroup.
Affected Software
3 affected components
Edimax AC1200 Wave 2 Dual-Band Gigabit Router
All of the following
Edimax Br-6478ac V3 Firmware=1.0.15
Edimax BR-6478AC V3
Event History
Apr 15, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-28143?
CVE-2025-28143 is classified as a critical command injection vulnerability.
2
How do I fix CVE-2025-28143?
To fix CVE-2025-28143, update the firmware of the Edimax AC1200 Wave 2 Dual-Band Gigabit Router to the latest version.
3
What is the impact of CVE-2025-28143 on my router?
CVE-2025-28143 allows an attacker to execute arbitrary commands on the router, potentially compromising the device.
4
Is my Edimax AC1200 Wave 2 Dual-Band Gigabit Router vulnerable to CVE-2025-28143?
If your router is running version V3_1.0.15, it is vulnerable to CVE-2025-28143.
5
How can I protect my network from CVE-2025-28143?
Protect your network by regularly updating your router firmware and monitoring for any unusual activity.