Executive brief
A security vulnerability exists in the Edimax BR-6675nD wireless router, a device used to provide internet connectivity and networking for homes and small offices. An attacker can exploit this flaw to crash the device or potentially take full control of it by sending a specially crafted request to the router's configuration interface. This could lead to a total loss of internet availability and the exposure of network traffic.
Technical details
A stack-based buffer overflow vulnerability exists in the Edimax BR-6675nD firmware version 1.12. The flaw is located within the 'formL2TPSetup' function in the '/goform/formL2TPSetup' component, which handles POST requests. By sending a malicious POST request with an oversized 'L2TPUserName' argument, a remote attacker with low privileges can trigger the overflow. This can lead to arbitrary code execution or a denial of service (DoS). As of the advisory date, the vendor has not responded to disclosure attempts, and no official patch is available.
Affected products
- Edimax BR-6675nD 1.12
Timeline
- 2026-05-24: disclosed: Public disclosure of the vulnerability and exploit details.
- 2026-05-24: advisory: CVE-2026-9380 published.