CVE-2026-7684Disclosure

LOWCVSS 7.4 · HIGH

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

A security vulnerability has been detected in Edimax BR-6428nC up to 1.16. This impacts an unknown function of the file /goform/setWAN. Such manipulation of the argument pptpDfGateway  leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-119CWE-120

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Patch or workaround signal is available
  • 8 mentions across 4 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 6 signals
  • Disclosure: 8 classified signals
  • Peaked 2d ago at 3 mentions (2026-05-03); latest day: 3
  • 8 total mentions across 4 days

Deep dive

Activity timeline8 mentions / 4d
01223Mentions · 2026-05-02: 1Mentions · 2026-05-03: 3Mentions · 2026-05-15: 1Mentions · 2026-06-01: 3Patch / Workaround · 2026-06-01: 1Technical Details · 2026-05-03: 2Technical Details · 2026-05-15: 1Technical Details · 2026-06-01: 305-0205-0305-1506-01
Signal classification1 categories
Disclosure
8100.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-05-021
Disclosure1
2026-05-033
Disclosure3
2026-05-151
Disclosure1
2026-06-013
Disclosure3
Full discourse8 posts
  • Lyrie.ai@lyrie_ai
    Disclosure

    TL;DR A critical unauthenticated remote buffer overflow (CVE-2026-7684, CVSS 8.8) in Edimax BR-6428nC routers (firmware ≤1.16) was disclosed May 3, 2026. No patch exists. Attackers can trigger arbitrary code execution by crafting malformed input to the /goform/setWAN…

    Post summary

    The post discloses a critical unauthenticated remote buffer overflow (CVE‑2026‑7684) affecting Edimax BR‑6428nC routers as of May 3, 2026, noting the lack of an available patch and detailing the vulnerability.

    1000040
    239 followersView on X
  • Lyrie.ai@lyrie_ai
    Disclosure

    The Branch Office Just Became the Perimeter: Edimax BR-6428nC Unauthenticated RCE (CVE-2026-7684) and Why Your SMB Routers Are the Blind Spot On May 3, 2026, security researchers disclosed CVE-2026-7684, a high-severity remote buffer overflow vulnerability in Edimax…

    Post summary

    Security researchers announced CVE-2026-7684, a high‑severity remote buffer overflow in the Edimax BR‑6428nC router, underscoring a new vulnerability in SMB routers.

    1000042
    239 followersView on X
  • Lyrie.ai@lyrie_ai
    Disclosure

    CVE-2026-7684 · 8.8 → 1.16 The Branch Office Just Became the Perimeter: Edimax BR-6428nC Unauthenticated RCE (CVE-2026-7684) and Why Your SMB Routers Are the Blind Spot

    Post summary

    The headline reveals a high‑severity, unauthenticated remote code execution flaw (CVE-2026-7684) in the Edimax BR‑6428nC router, underscoring the vulnerability of SMB routers as security blind spots.

    1000034
    239 followersView on X
  • ADK Cyber@ADKCyber
    Disclosure

    A new high-severity vulnerability (CVE-2026-7684) affects Edimax BR-6428nC routers allowing remote buffer overflow attacks. If you use this device, update or mitigate quickly to protect your network. Contact ADK Cyber for help assessing your risks. #Cybersecurity

    Post summary

    The post announces a high‑severity CVE‑2026‑7684, a remote buffer overflow vulnerability in Edimax BR‑6428nC routers, urging users to patch or mitigate.

    0000048
    80 followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-7684 A security vulnerability has been detected in Edimax BR-6428nC up to 1.16. This impacts an unknown function of the file /goform/setWAN. Such manipulation of the argumen… https://www.cve.org/CVERecord?id=CVE-2026-7684 ----- Traducción: CVE-2026-7684 Se … http://infoflow.cloud`

    Post summary

    CVE-2026-7684 has been disclosed as a vulnerability affecting the /goform/setWAN function on Edimax BR-6428nC; no PoC, exploit, patch, or evidence of active exploitation is mentioned.

    0000024
    75 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-7684 A security vulnerability has been detected in Edimax BR-6428nC up to 1.16. This impacts an unknown function of the file /goform/setWAN. Such manipulation of the argumen… https://www.cve.org/CVERecord?id=CVE-2026-7684

    Post summary

    The text announces the detection of CVE-2026-7684 in Edimax routers, noting an unknown function in /goform/setWAN may be vulnerable but provides no further technical detail, exploit, or patch information.

    00000196
    57.4K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-7684 Buffer Overflow in Edimax BR-6428nC Up to 1.16 setWAN Function https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-7684

    Post summary

    The post announces a buffer overflow vulnerability (CVE-2026-7684) in the setWAN function of Edimax BR‑6428nC, with no PoC, exploit, mitigation, or active exploitation details provided.

    0000050
    4.0K followersView on X
  • VulDB 🛡@vuldb
    Disclosure

    A severe vulnerability was disclosed for Edimax BR-6428nC (CVE-2026-7684) https://vuldb.com/vuln/360843

    Post summary

    A severe vulnerability for Edimax BR-6428nC (CVE-2026-7684) has been disclosed, with an external link to a vulnerability database for reference.

    0000057
    2.1K followersView on X

Explore more