CVE-2025-28146: Edimax Br-6478ac v3 Firmware
Critical severity, CVSS 9.8. EPSS: 11.5% chance of exploitation in the next 30 days.
Edimax AC1200 Wave 2 Dual-Band Gigabit Router BR-6478AC V3 1.0.15 was discovered to contain a command injection vulnerability via fota_url in /boafrm/formLtefotaUpgradeQuectel
Affected products
- Edimax Br-6478ac v3 Firmware: version 1.0.15 only
Published 2025-04-04. Last modified 2026-06-17.