CVE-2026-36734 - Vulnerability Analysis
HighCVSS: 8.8Last Updated: May 12, 2026
EDIMAX BR-6428nS V3 - Command Injection
Published: May 11, 2026Updated: May 12, 2026Remote Exploitable
Overview
EDIMAX BR-6428nS V3 1.15 contains a command injection caused by insufficient input validation in WLAN configuration functionality, letting authenticated attackers execute arbitrary system commands on the device.
Severity & Score
Severity: High
CVSS Score: 8.8
Impact
Authenticated attackers can execute arbitrary system commands, potentially taking full control of the device.
Mitigation
Update to the latest version or apply vendor patches addressing this issue.
Related Resources
Details
- CVE ID
- CVE-2026-36734
- Severity
- High
- CVSS Score
- 8.8
- Type
- command_injection
- Status
- new
CWE
- CWE-77
CVSS Metrics
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H