LeakyCreds
NewInstant webhook alerts now available — notified within seconds of any credential detection.Learn more →
Home / Vulnerability Intelligence / CVE-2026-36734

CVE-2026-36734 - Vulnerability Analysis

HighCVSS: 8.8

Last Updated: May 12, 2026

EDIMAX BR-6428nS V3 - Command Injection

Published: May 11, 2026Updated: May 12, 2026Remote Exploitable

Overview

EDIMAX BR-6428nS V3 1.15 contains a command injection caused by insufficient input validation in WLAN configuration functionality, letting authenticated attackers execute arbitrary system commands on the device.

Severity & Score

Severity: High
CVSS Score: 8.8

Impact

Authenticated attackers can execute arbitrary system commands, potentially taking full control of the device.

Mitigation

Update to the latest version or apply vendor patches addressing this issue.

Details

CVE ID
CVE-2026-36734
Severity
High
CVSS Score
8.8
Type
command_injection
Status
new

CWE

  • CWE-77

CVSS Metrics

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H