PT-2026-45168 · Edimax · Br-6478Ac

Wxhwxhwxh_Mie

·

Published

2026-05-31

·

Updated

2026-05-31

·

CVE-2026-10166

CVSS v2.0

6.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:P
A vulnerability was determined in Edimax BR-6478AC 1.23. The affected element is the function formWlbasic of the file /goform/formWlbasic of the component POST Request Handler. This manipulation of the argument rootAPmac causes command injection. The attack is possible to be carried out remotely. The exploit has been publicly disclosed and may be utilized.

Exploit

Fix

Special Elements Injection

Command Injection

Weakness Enumeration

Related Identifiers

CVE-2026-10166

Affected Products

Br-6478Ac