Description
A vulnerability was detected in Edimax EW-7438RPn 1.31. Affected by this vulnerability is the function formWpsProxyEnable of the file /goform/formWpsProxyEnable. The manipulation of the argument submit-url results in stack-based buffer overflow. The attack can be launched remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Published: 2026-05-25
Score: 8.7 High
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A stack-based buffer overflow exists in the formWpsProxyEnable function of Edimax EW‑7438RPn routers, caused by manipulating the submit‑url argument passed to the "/goform/formWpsProxyEnable" endpoint. The overflow enables an attacker to execute arbitrary code on the device. The vulnerability is exposed through a remote interface, meaning an external attacker can trigger it without physical access. Because the exploit code is publicly available, the potential damage includes full device compromise, persistence, and denial of service.

Affected Systems

The flaw affects Edimax EW‑7438RPn models running firmware version 1.31. No other firmware or model versions were explicitly listed as affected in the available data.

Risk and Exploitability

The CVSS score of 8.7 indicates a high severity. EPSS is not available, so the current publicly known exploitation probability cannot be determined. The vulnerability is not listed in the CISA KEV catalog, but the exploit is publicly available, implying a realistic risk of exploitation. Because the attack vector is remote and no patch is reported, the risk to exposed devices remains high until mitigation measures are deployed.

Generated by OpenCVE AI on May 25, 2026 at 16:35 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade the device to the latest firmware provided by Edimax that contains a fix for the buffer and stack-based overflow vulnerabilities (CWE‑119, CWE‑121); if no update exists, note that the vendor has not issued a patch.
  • Disable the WPS feature or block remote access to the "/goform/formWpsProxyEnable" endpoint using firewall rules or access‑control lists to mitigate the buffer overflow (CWE‑119) and stack overflow (CWE‑121).
  • Restrict remote management traffic to trusted IP ranges and monitor network logs for attempted interactions with the vulnerable endpoint to detect misuse of the buffer and stack overflows (CWE‑119, CWE‑121).
  • Consult Edimax’s official website or support portal for the latest firmware patches and advisories related to the formWpsProxyEnable vulnerability to ensure the fix is applied.

Generated by OpenCVE AI on May 25, 2026 at 16:35 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 25 May 2026 14:30:00 +0000

Type Values Removed Values Added
Description A vulnerability was detected in Edimax EW-7438RPn 1.31. Affected by this vulnerability is the function formWpsProxyEnable of the file /goform/formWpsProxyEnable. The manipulation of the argument submit-url results in stack-based buffer overflow. The attack can be launched remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Title Edimax EW-7438RPn formWpsProxyEnable stack-based overflow
First Time appeared Edimax
Edimax ew-7438rpn
Weaknesses CWE-119
CWE-121
CPEs cpe:2.3:a:edimax:ew-7438rpn:*:*:*:*:*:*:*:*
Vendors & Products Edimax
Edimax ew-7438rpn
References
Metrics cvssV2_0

{'score': 9, 'vector': 'AV:N/AC:L/Au:S/C:C/I:C/A:C/E:POC/RL:ND/RC:UR'}

cvssV3_0

{'score': 8.8, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:P/RL:X/RC:R'}

cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:P/RL:X/RC:R'}

cvssV4_0

{'score': 8.7, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P'}


Subscriptions

Edimax Ew-7438rpn
cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-05-25T13:30:10.163Z

Reserved: 2026-05-24T08:03:11.887Z

Link: CVE-2026-9462

cve-icon Vulnrichment

No data.

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-05-25T16:45:26Z

Weaknesses