Unrated severityNVD Advisory· Published Feb 5, 2026· Updated Mar 5, 2026
Edimax Technology EW-7438RPn-v3 Mini 1.27 - Remote Code Execution
CVE-2020-37125
Description
Edimax EW-7438RPn-v3 Mini 1.27 contains a remote code execution vulnerability that allows unauthenticated attackers to execute arbitrary commands through the /goform/mp endpoint. Attackers can exploit the vulnerability by sending crafted POST requests with command injection payloads to download and execute malicious scripts on the device.
Affected products
2= 1.27+ 1 more
- (no CPE)range: = 1.27
- (no CPE)range: 1.27
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.