CVE-2026-19961Disclosure

LOWCVSS 8.6 · HIGH

Exploit discussion active in current signal (2 latest mentions)

Immediate actions

  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

A vulnerability was detected in Edimax EW-7478APC 1.04. Affected is the function formWlSiteSurvey of the file /goform/formWlSiteSurvey. Performing a manipulation of the argument selSSID results in buffer overflow. The attack is possible to be carried out remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

1.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-119CWE-120

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Threat summary

  • Public PoC is present in monitored signal
  • 4 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • Peaked 1d ago at 2 mentions (2026-08-16); latest day: 2
  • 4 total mentions across 2 days

Deep dive

Activity timeline4 mentions / 2d
01122Mentions · 2026-08-16: 2Mentions · 2026-08-17: 2PoC Mentioned / Linked · 2026-08-17: 1Technical Details · 2026-08-16: 1Technical Details · 2026-08-17: 108-1608-17
Signal classification3 categories
Disclosure
250.0%
General
125.0%
PoC
125.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-08-162
Disclosure2
2026-08-172
General1PoC1
Full discourse4 posts
  • ExploitGrid@exploitgrid
    PoC

    [CVE] CVE-2026-19961 [HIGH PRIORITY] #Edimax EW-7478APC formWlSiteSurvey buffer overflow 🔗 https://exploitgrid.net/cve/CVE-2026-19961

    Post summary

    A brief advisory announces CVE-2026-19961 as a high-priority buffer overflow in Edimax EW-7478APC and links to an external site likely hosting a PoC or exploit details.

    1000015
    33 followersView on X
  • ExploitGrid@exploitgrid
    General

    🛡️ ExploitGrid Daily Threat Digest Top Vulnerabilities (CVEs) of the day CVE-2026-19977 CVE-2024-13784 CVE-2026-15623 CVE-2026-19959 CVE-2026-19961 ..🧵👇

    Post summary

    The tweet simply lists a set of CVE identifiers as the day's top vulnerabilities without providing any additional context or technical details.

    1000032
    33 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-19961 Remote Buffer Overflow in Edimax EW-7478APC 1.04 via formWlSiteSu... https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-19961 Vulnerability Alert Subscriptions: https://alerts.vulmon.com/?utm_source=twitter&utm_medium=social&utm_campaign=2102281&utm_content=1

    Post summary

    The information announces a new remote buffer overflow (CVE‑2026‑19961) in Edimax EW‑7478APC firmware 1.04, providing basic technical details but no exploit evidence or patch notes.

    00000119
    4.1K followersView on X
  • VulDB 🛡@vuldb
    Disclosure

    A severe vulnerability was disclosed for Edimax EW-7478APC (CVE-2026-19961) https://vuldb.com/vuln/391138

    Post summary

    A brief notification that a severe vulnerability (CVE-2026-19961) has been disclosed for the Edimax EW‑7478APC without further technical or remediation details.

    00000117
    2.3K followersView on X

Explore more