Description
A flaw has been found in Edimax BR-6258n up to 1.18. This issue affects the function formStaDrvSetup of the file /goform/formStaDrvSetup. This manipulation of the argument submit-url causes open redirect. The attack can be initiated remotely. The exploit has been published and may be used. The vendor confirms that the affected product is end-of-life. They confirm that they "will issue a consolidated Security Advisory on our official support website." This vulnerability only affects products that are no longer supported by the maintainer.
Problem types
Product status
1.1
1.2
1.3
1.4
1.5
1.6
1.7
1.8
1.9
1.10
1.11
1.12
1.13
1.14
1.15
1.16
1.17
1.18
Timeline
| 2026-02-05: | Advisory disclosed |
| 2026-02-05: | VulDB entry created |
| 2026-02-05: | VulDB entry last update |
Credits
tian (VulDB User)
References
vuldb.com/?id.344492 (VDB-344492 | Edimax BR-6258n formStaDrvSetup redirect)
vuldb.com/?ctiid.344492 (VDB-344492 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/?submit.742734 (Submit #742734 | Edimax BR-6258n v1.18 Open Redirect)
tzh00203.notion.site/...03bb958e4f80cdf2550?source=copy_link