• News/
  • https://www.bleepingcomputer.com/news/security/unpatched-edimax-ip-camera-flaw-actively-exploited-in-botnet-attacks/

Unpatched Edimax IP camera flaw actively exploited in botnet attacks

BleepingComputer
·
Bill Toulas
·
Published Mar 7, 2025
·
Updated

A critical command injection vulnerability impacting the Edimax IC-7100 IP camera is currently being exploited by botnet malware to compromise devices. The flaw was discovered by Akamai researchers, who confirmed to BleepingComputer that the flaw is exploited in attacks that are still ongoing. Akamai researcher Kyle Lefton told BleepingComputer that they will provide more technical details about the flaw and the associated botnet next week. After discovering the flaw, Akamai reported it to the U.S. Cybersecurity & Infrastructure Agency (CISA), who attempted to contact the Taiwanese vendor. "Both Akamai SIRT and CISA attempted to contact the vendor (Edimax) multiple times. CISA was unable to get a response from them," Lefton told BleepingComputer.com. "I personally reached out to them and received a response, but all they said was that the device in question, IC-7100, was end of life, therefore not receiving further updates. As Edimax was unable to provide us with more information, it is possible that this CVE affects a wider range of devices, and it is unlikely that a patch will released." The Edimax IC-7100 is an IP security camera for remote surveillance at homes, small office buildings, commercial facilities, and industrial settings. The product isn't widely available in retail channels anymore. It was released in October 2011, and Edimax lists it under its 'legacy products,' suggesting it's no longer produced and is likely no longer supported. However, a significant numb...

Read full article

Affected Software

1 affected component
Edimax IC-7100 IP Camera

Frequently Asked Questions

1

What is the main topic of this article?

The article discusses a critical command injection vulnerability in the Edimax IC-7100 IP camera that is being exploited in botnet attacks.

2

What security implications are discussed in the article?

The article highlights that the unpatched vulnerability is being used by botnet malware to compromise devices, posing significant security risks.

3

What specific product is affected by the vulnerability?

The affected product is the Edimax IC-7100 IP camera, which has a critical security flaw.

4

Who discovered the vulnerability discussed in the article?

The vulnerability was discovered by researchers at Akamai.

5

Is there a patch available for the vulnerability in the Edimax IC-7100 IP camera?

The article states that the vulnerability remains unpatched, increasing the risk of exploitation.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203