Edimax EW-7438RPn 1.13 contains a cross-site request forgery vulnerability in the MAC filtering configuration interface. Attackers can craft malicious web pages to trick users into adding unauthorized MAC addresses to the device's filtering rules without their consent.
History

Wed, 04 Feb 2026 21:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 04 Feb 2026 12:15:00 +0000

Type Values Removed Values Added
First Time appeared Edimax
Edimax ew-7438rpn Mini
Vendors & Products Edimax
Edimax ew-7438rpn Mini

Tue, 03 Feb 2026 22:15:00 +0000

Type Values Removed Values Added
Description Edimax EW-7438RPn 1.13 contains a cross-site request forgery vulnerability in the MAC filtering configuration interface. Attackers can craft malicious web pages to trick users into adding unauthorized MAC addresses to the device's filtering rules without their consent.
Title Edimax EW-7438RPn - Cross-Site Request Forgery (MAC Filtering)
Weaknesses CWE-352
References
Metrics cvssV3_1

{'score': 5.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N'}

cvssV4_0

{'score': 5.1, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published:

Updated: 2026-02-04T20:25:16.439Z

Reserved: 2026-02-01T13:16:06.487Z

Link: CVE-2020-37096

cve-icon Vulnrichment

Updated: 2026-02-04T20:25:05.791Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-02-03T22:16:25.847

Modified: 2026-02-04T16:33:44.537

Link: CVE-2020-37096

cve-icon Redhat

No data.