CNNVD-202506-2804 Information

CNNVD ID

CNNVD-202506-2804

CVE-2025-34024

  • CNNVD Published: 2025-06-20

Description (Chinese)

Edimax EW-7438RPn是中国台湾讯舟(Edimax)公司的一款无线信号扩展器。 Edimax EW-7438RPn 1.13及之前版本存在安全漏洞,该漏洞源于mp.asp表单处理器未正确处理命令参数,可能导致OS命令注入攻击。

Description (English)

Edimax EW-7438RPn is a wireless signal extension of the Chinese company Edimax. Edimax EW-7438RPn 1.13 and previous versions contain a security loophole, which stems from the incorrect handling of command parameters by the mp.asp table processor, which could lead to an OS order being injected into the attack.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

讯舟

Published

2025-06-20

Last Modified

2026-02-24

References

https://www.broadcom.com/support/security-center/attacksignatures/detail?asid=32163 https://www.edimax.com/edimax/merchandise/merchandise_detail/data/edimax/global/wi-fi_range_extenders_n300/ew-7438rpn_mini/ https://www.exploit-db.com/exploits/48377 https://vulncheck.com/advisories/edimax-ew-7438rpn-command-injections https://access.redhat.com/security/cve/cve-2025-34024

Patch

https://www.edimax.com/edimax/download/download/data/edimax/tw/download/for_home/wi-fi_range_extenders/wi-fi_range_extenders_n300/ew-7438rpn_mini

Share on: