CVE-2026-32839: Edimax Gs-5008pl Firmware
Medium severity, CVSS 6.5. EPSS: 0.2% chance of exploitation in the next 30 days.
Edimax GS-5008PL firmware version 1.00.54 and prior contain a cross-site request forgery vulnerability that allows remote attackers to perform unauthorized administrative actions by inducing logged-in administrators to visit malicious pages. Attackers can exploit the lack of anti-CSRF tokens and request validation to change passwords, upload firmware, reboot the device, perform factory resets, or modify network configurations.
Affected products
- Edimax Gs-5008pl Firmware: up to and including 1.00.54
Published 2026-03-17. Last modified 2026-06-17.