CVE-2026-19959General

LOWCVSS 8.6 · HIGH

Exploit discussion active in current signal (2 latest mentions)

Immediate actions

  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

A weakness has been identified in Edimax EW-7478APC 1.04. This affects the function formWanTcpipSetup of the file /goform/formWanTcpipSetup. This manipulation of the argument pppUserName causes stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit has been made available to the public and could be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.

1.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-119CWE-121

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

NONE

Threat summary

  • Public PoC is present in monitored signal
  • 2 mentions across 1 observed day

What's happening

  • PoC mentioned or linked in 1 signal
  • Technical details provided in 1 signal
  • General: 1 classified signal
  • 2 total mentions across 1 day

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-08-17: 2PoC Mentioned / Linked · 2026-08-17: 1Technical Details · 2026-08-17: 108-17
Signal classification2 categories
General
150.0%
PoC
150.0%
Referenced assets1 URL
By indicator
Full discourse2 posts
  • ExploitGrid@exploitgrid
    PoC

    [CVE] CVE-2026-19959 [HIGH PRIORITY] #Edimax EW-7478APC formWanTcpipSetup stack-based overflow 🔗 https://exploitgrid.net/cve/CVE-2026-19959

    Post summary

    A stack‑based buffer overflow is announced for Edimax EW‑7478APC's formWanTcpipSetup, and a Proof of Concept is linked on Exploitgrid, underscoring the vulnerability’s availability but no indication of active exploitation.

    1000016
    33 followersView on X
  • ExploitGrid@exploitgrid
    General

    🛡️ ExploitGrid Daily Threat Digest Top Vulnerabilities (CVEs) of the day CVE-2026-19977 CVE-2024-13784 CVE-2026-15623 CVE-2026-19959 CVE-2026-19961 ..🧵👇

    Post summary

    The digest simply enumerates several CVE identifiers without offering any additional context or technical details.

    1000032
    33 followersView on X

Explore more