CVE-2026-9360: Edimax EW-7438RPn POST Request formwlencrypt24g buffer overflow
A security flaw has been discovered in Edimax EW-7438RPn 1.28a. Affected by this issue is the function formwlencrypt24g of the file /goform/formwlencrypt24g of the component POST Request Handler. The manipulation of the argument key1 results in buffer overflow. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-9360?
CVE-2026-9360 has a severity rating of high, with a score of 8.8.
What is the risk associated with CVE-2026-9360?
The risk level associated with CVE-2026-9360 is categorized as 78.
How do I fix CVE-2026-9360?
To mitigate CVE-2026-9360, update the Edimax EW-7438RPn firmware to the latest version provided by the vendor.
What type of vulnerability is CVE-2026-9360?
CVE-2026-9360 is classified as a buffer overflow vulnerability.
Can CVE-2026-9360 be exploited remotely?
Yes, CVE-2026-9360 can be exploited remotely through the function formwlencrypt24g.