Junglewise Threat Intelligence

CVE-2026-9360: Edimax EW-7438RPn buffer overflow in formwlencrypt24g

CVE-2026-9360 · Severity: high · CVSS 8.8 · Published 2026-05-24

Vendors: Edimax.

Executive brief

A security vulnerability exists in the Edimax EW-7438RPn Mini Wi-Fi extender. This device is used to expand wireless network coverage in homes and small offices. An attacker could exploit this flaw to take control of the device, potentially leading to a complete service outage or unauthorized access to the local network. Public exploit code is available, increasing the risk of active attacks.

Technical details

A stack-based buffer overflow exists in the Edimax EW-7438RPn Mini firmware version 1.28a. The vulnerability is located within the 'formwlencrypt24g' function in the '/goform/formwlencrypt24g' file, which handles POST requests. By sending a specially crafted POST request with a manipulated 'key1' argument, a remote attacker with low privileges can trigger the overflow. This can lead to arbitrary code execution or a crash of the device's web management interface. Public exploit code has been released, and the vendor has reportedly not responded to disclosure attempts.

Affected products

  • Edimax EW-7438RPn Mini 1.28a

Timeline

  • 2026-05-24: disclosed: Initial public disclosure of the vulnerability and exploit code.
  • 2026-05-24: advisory: CVE-2026-9360 published.

References

Related threats