Description
Edimax EW-7438RPn-v3 Mini 1.27 allows unauthenticated attackers to access the /wizard_reboot.asp page in unsetup mode, which discloses the Wi-Fi SSID and security key. Attackers can retrieve the wireless password by sending a GET request to this endpoint, exposing sensitive information without authentication.
Problem types
Insertion of Sensitive Information Into Sent Data
Product status
1.27
Credits
Wadeek
References
www.exploit-db.com/exploits/48318 (ExploitDB-48318)
www.edimax.com/...i-fi_range_extenders_n300/ew-7438rpn_mini/ (Edimax EW-7438RPn Mini Product Page)
www.vulncheck.com/...orized-access-wi-fi-password-disclosure (VulnCheck Advisory: Edimax Technology EW-7438RPn-v3 Mini 1.27 - Unauthorized Access: Wi-Fi Password Disclosure)