Critical severity9.8NVD Advisory· Published Feb 5, 2026· Updated Jun 17, 2026
CVE-2020-37125
CVE-2020-37125
Description
Edimax EW-7438RPn-v3 Mini 1.27 contains a remote code execution vulnerability that allows unauthenticated attackers to execute arbitrary commands through the /goform/mp endpoint. Attackers can exploit the vulnerability by sending crafted POST requests with command injection payloads to download and execute malicious scripts on the device.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
41.27+ 1 more
- (no CPE)range: 1.27
- (no CPE)
- cpe:2.3:o:edimax:ew-7438rpn_mini_firmware:1.27:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
3- www.exploit-db.com/exploits/48318nvdExploitThird Party AdvisoryVDB Entry
- www.edimax.com/edimax/merchandise/merchandise_detail/data/edimax/global/wi-fi_range_extenders_n300/ew-7438rpn_mini/nvdProduct
- www.vulncheck.com/advisories/edimax-technology-ew-rpn-mini-remote-code-executionnvdBroken Link
News mentions
0No linked articles in our index yet.