CVE-2026-36734: Command Injection
EDIMAX BR-6428nS V3 1.15 is vulnerable to Command Injection. An authenticated attacker with access to the network can submit crafted input to the WLAN configuration functionality. Due to insufficient input validation, the attacker is able to execute arbitrary system commands on the device.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
EDIMAX BR-6428nS V3to a version that resolves this vulnerability.Fixed in 1.15
Event History
Frequently Asked Questions
What is the severity of CVE-2026-36734?
CVE-2026-36734 is classified as a high severity vulnerability due to its potential for remote command execution.
How do I fix CVE-2026-36734?
To mitigate CVE-2026-36734, you should update the EDIMAX BR-6428nS V3 to the latest firmware version that addresses this vulnerability.
Who is affected by CVE-2026-36734?
CVE-2026-36734 affects users of the EDIMAX BR-6428nS V3 running firmware version 1.15.
What type of vulnerability is CVE-2026-36734?
CVE-2026-36734 is a command injection vulnerability that allows authenticated attackers to execute arbitrary commands on the device.
What can an attacker do with CVE-2026-36734?
An attacker exploiting CVE-2026-36734 can gain control over the EDIMAX BR-6428nS V3 device by executing system commands through crafted input.