CVE-2026-9480: Edimax EW-7438RPn formrefresh stack-based overflow
A vulnerability was detected in Edimax EW-7438RPn 1.31. The impacted element is the function formrefresh of the file /goform/formrefresh. The manipulation of the argument submit-url results in stack-based buffer overflow. It is possible to launch the attack remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-9480?
CVE-2026-9480 has a high severity rating of 8.8.
How do I fix CVE-2026-9480?
To fix CVE-2026-9480, apply the latest firmware update provided by Edimax for the EW-7438RPn.
What impact does CVE-2026-9480 have?
CVE-2026-9480 allows remote attackers to execute arbitrary code due to a stack-based buffer overflow.
What software is affected by CVE-2026-9480?
CVE-2026-9480 affects the Edimax EW-7438RPn version 1.31.
Can CVE-2026-9480 be exploited remotely?
Yes, CVE-2026-9480 can be exploited remotely by manipulating the submit-url argument.