CVE-2024-48418
27.01.2025, 17:15
In Edimax AC1200 Wi-Fi 5 Dual-Band Router BR-6476AC 1.06, the request /goform/fromSetDDNS does not properly handle special characters in any of user provided parameters, allowing an attacker with access to the web interface to inject and execute arbitrary shell commands.
Vendor | Product | Version |
---|---|---|
edimax | br-6476ac_firmware | 1.06 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration