CVE-2023-31986: Edimax Br-6428ns Firmware

Critical severity, CVSS 9.8. EPSS: 8.2% chance of exploitation in the next 30 days.

A Command Injection vulnerability in Edimax Wireless Router N300 Firmware BR-6428NS_v4 allows attacker to execute arbitrary code via the setWAN function in /bin/webs without any limitations.

Affected products

  • Edimax Br-6428ns Firmware: version 1.10 only

Published 2023-05-15. Last modified 2026-06-17.