CVE-2026-13582Disclosure

LOWCVSS 7.4 · HIGH

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Patch affected systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

A flaw has been found in Edimax EW-7478APC 1.04. This issue affects the function formUSBAccount of the file /goform/formUSBAccount of the component POST Request Handler. This manipulation of the argument UserName/Password causes buffer overflow. The attack is possible to be carried out remotely. The exploit has been published and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

2.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-119CWE-120

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Public PoC is present in monitored signal
  • Patch or workaround signal is available
  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 2 signals
  • Disclosure: 1 classified signal
  • Peaked 1d ago at 1 mentions (2026-06-30); latest day: 1
  • 2 total mentions across 2 days

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-06-30: 1Mentions · 2026-07-01: 1PoC Mentioned / Linked · 2026-07-01: 1Patch / Workaround · 2026-06-30: 1Patch / Workaround · 2026-07-01: 1Technical Details · 2026-06-30: 1Technical Details · 2026-07-01: 106-3007-01
Signal classification2 categories
Disclosure
150.0%
Patch
150.0%
Referenced assets1 URL
By indicator
Classification over time
DateTotalLabels
2026-06-301
Disclosure1
2026-07-011
Patch1
Full discourse2 posts
  • DFIR Lab@DFIR_Lab
    Patch

    🚨 HIGH: CVE-2026-13582 (CVSS 8.8) - Buffer overflow in Edimax EW-7478APC 1.04 routers. Remote exploit published. Affects formUSBAccount function. Vendor unresponsive. Patch/replace immediately. #CVE #PatchNow #ThreatIntel https://t.co/IgaWKsQLX6

    Post summary

    The tweet announces that a remote exploit for CVE-2026-13582 is available and urges users to patch or replace affected Edimax routers immediately.

    0000072
    56 followersView on X
  • Hugo | DevOps | Cybersecurity 🇱🇻@HugoValters
    Disclosure

    #CVE-2026-13582 - Critical buffer overflow in #Edimax EW-7478APC 1.04. Remote exploitation via UserName/Password args in formUSBAccount. #CVSS 8.8. Vendor unresponsive. No patch available. Isolate affected devices immediately. #CVE #cybersecurity #infosec More: https://www.valtersit.com/cve/CVE-2026-13582

    Post summary

    The post announces a newly disclosed critical buffer overflow in Edimax EW-7478APC 1.04, notes the lack of a vendor patch, and advises immediate device isolation.

    0000097
    967 followersView on X

Explore more