CVE-2024-48418

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Jan 27, 2025
Updated: Jan 28, 2025
CWE ID 352

Summary

CVE-2024-48418 is a vulnerability affecting the Edimax AC1200 Wi-Fi 5 Dual-Band Router BR-6476AC 1.06. The issue lies in the router's /goform/fromSetDDNS function, which mishandles special characters in user-supplied parameters. An attacker with access to the web interface can exploit this flaw to inject and execute arbitrary shell commands. This vulnerability poses a significant risk and may lead to unauthorized access, data theft, or router compromise. Users are advised to update their routers to the latest firmware as soon as possible to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share