VendorsEdimaxbr-6208ac2.0
Vulnerabilities

Edimax BR-6208AC 2.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2025-70161
EDIMAX BR-6208AC V2_1.02 is vulnerable to Command Injection. This arises because the pppUserName field is directly passed to a shell command via the system() function without proper sanitization. An attacker can exploit this by injecting malicious commands into the pppUserName field, allowing arbitrary code execution.
Published 2026-01-09 · Analyzed
9.8EPSS 0.271
CVE-2025-15257
Edimax BR-6208AC Web-based Configuration formRoute command injection
Published 2025-12-30 · Modified
9.8EPSS 0.051
CVE-2025-15256
Edimax BR-6208AC Web-based Configuration formStaDrvSetup command injection
Published 2025-12-30 · Analyzed
9.8EPSS 0.038
CVE-2026-1972
Edimax BR-6208AC auth_check_userpass2 default credentials
Published 2026-02-06 · Analyzed
7.5EPSS 0.006
CVE-2025-14910
Edimax BR-6208AC FTP Daemon Service handle_retr path traversal
Published 2025-12-19 · Analyzed
6.5EPSS 0.005