Security Advisory

CVE-2020-37150

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-02-05 16:13:42
Last updated 2026-03-05 01:28:15
Assigner VulnCheck
State PUBLISHED

Description

Edimax EW-7438RPn-v3 Mini 1.27 allows unauthenticated attackers to access the /wizard_reboot.asp page in unsetup mode, which discloses the Wi-Fi SSID and security key. Attackers can retrieve the wireless password by sending a GET request to this endpoint, exposing sensitive information without authentication.