CVE-2020-37097

Edimax EW-7438RPn 1.13 contains an information disclosure vulnerability that exposes WiFi network configuration details through the wlencrypt_wiz.asp file. Attackers can access the script to retrieve sensitive information including WiFi network name and plaintext password stored in device configuration variables.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:edimax:ew-7438rpn_mini_firmware:1.13:*:*:*:*:*:*:*
cpe:2.3:h:edimax:ew-7438rpn_mini:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-02-03 22:16

Updated : 2026-02-20 15:45


NVD link : CVE-2020-37097

Mitre link : CVE-2020-37097

CVE.ORG link : CVE-2020-37097


JSON object : View

Products Affected

edimax

  • ew-7438rpn_mini_firmware
  • ew-7438rpn_mini
CWE
CWE-522

Insufficiently Protected Credentials