CVE-2020-37096 MEDIUM

CVE-2020-37096: Edimax EW-7438RPn - Cross-Site Request Forgery (MAC Filtering)

Vendor Edimax Technology Co., Ltd.
Product EW-7438RPn Mini
Weakness CWE-352 · CSRF
Published February 3, 2026
Last update March 5, 2026

CVSS base score

5.1/10
Attack vector Network
Attack complexity Low
Privileges required None
User interaction
Confidentiality
Integrity

CVSS vector

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N

What the vulnerability does

01Description

Edimax EW-7438RPn 1.13 contains a cross-site request forgery vulnerability in the MAC filtering configuration interface. Attackers can craft malicious web pages to trick users into adding unauthorized MAC addresses to the device's filtering rules without their consent.

Key dates

02Disclosure timeline

February 3, 2026 CVE published
March 5, 2026 Record updated