A security flaw has been discovered in Edimax BR-6428NS 1.10. This affects the function formWirelessTbl of the file /goform/formWirelessTbl of the component POST Request Handler. Performing a manipulation of the argument vapurl results in buffer overflow. The attack can be initiated remotely. The exploit has been released to the public and may be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.
A buffer overflow vulnerability exists in Edimax BR-6428NS router firmware version 1.10 affecting the wireless configuration handler, allowing remote code execution through malicious POST requests. The vulnerability has public exploits available and the vendor has not provided patches or support.
ثغرة تجاوز المخزن المؤقت في دالة formWirelessTbl بملف /goform/formWirelessTbl في معالج طلبات POST لجهاز Edimax BR-6428NS الإصدار 1.10. يمكن استغلال الثغرة عن بعد من خلال معالجة معامل vapurl بشكل ضار لتنفيذ أوامر عشوائية.
Edimax BR-6428NS router firmware 1.10 contains a buffer overflow flaw in the wireless settings function that can be exploited remotely to execute arbitrary code. Public exploits are available and the vendor has not responded to disclosure attempts.
Immediately upgrade to the latest available firmware version for Edimax BR-6428NS routers; if no patches are available, consider replacing the device with a supported alternative; isolate affected routers from critical networks; implement network segmentation and monitor for suspicious POST requests to /goform/formWirelessTbl endpoints.
قم بترقية البرنامج الثابت فوراً إلى أحدث إصدار متاح لأجهزة Edimax BR-6428NS؛ إذا لم تكن هناك تحديثات متاحة، فكر في استبدال الجهاز بديل مدعوم؛ عزل الأجهزة المتأثرة عن الشبكات الحرجة؛ تطبيق تقسيم الشبكة ومراقبة طلبات POST المريبة.