CVE-2025-1316: Edimax IC-7100 IP Camera OS Command Injection Vulnerability

Critical severity, CVSS 9.8. Actively exploited: in CISA KEV since 2025-03-19. EPSS: 74.5% chance of exploitation in the next 30 days.

Edimax IC-7100 does not properly neutralize requests. An attacker can create specially crafted requests to achieve remote code execution on the device

Affected products

  • Edimax IC-7100 Firmware: any version

Published 2025-03-05. Last modified 2026-06-17.