Junglewise Threat Intelligence

CVE-2026-9381: Edimax BR-6675nD buffer overflow in formPPPoESetup

CVE-2026-9381 · Severity: high · CVSS 8.8 · Published 2026-05-24

Technologies: Edimax BR-6675nD. Vendors: Edimax.

Executive brief

A security vulnerability exists in the Edimax BR-6675nD wireless router, a device used to provide internet connectivity and networking for homes and small offices. An attacker can exploit this flaw to crash the device or potentially take full control of it by sending a specially crafted web request. This could lead to a complete loss of internet service, unauthorized access to the local network, or the interception of data passing through the router.

Technical details

A classic buffer overflow (CWE-120) exists in the Edimax BR-6675nD router firmware version 1.12. The vulnerability is located within the 'formPPPoESetup' function in the '/goform/formPPPoESetup' file, which handles POST requests for PPPoE configuration. By providing an overly long string to the 'pppUserName' argument, an attacker can overflow a memory buffer. This attack can be initiated over the network, though it typically requires low-level authentication (PR:L). Successful exploitation can lead to remote code execution (RCE) or a denial of service (DoS) condition. As of the advisory date, no patch has been released by the vendor.

Affected products

  • Edimax BR-6675nD 1.12

Timeline

  • 2026-05-24: disclosed: Initial public disclosure and CVE assignment
  • 2026-05-24: advisory: VulDB published the vulnerability details

References

Related threats