Edimax EW-7438RPn-v3 Mini 1.27 allows unauthenticated...
High severity
Unreviewed
Published
Feb 5, 2026
to the GitHub Advisory Database
•
Updated Feb 5, 2026
Description
Published by the National Vulnerability Database
Feb 5, 2026
Published to the GitHub Advisory Database
Feb 5, 2026
Last updated
Feb 5, 2026
Edimax EW-7438RPn-v3 Mini 1.27 allows unauthenticated attackers to access the /wizard_reboot.asp page in unsetup mode, which discloses the Wi-Fi SSID and security key. Attackers can retrieve the wireless password by sending a GET request to this endpoint, exposing sensitive information without authentication.
References