HIGHCVE-2026-32838Published Modified CNA VulnCheck
CVE-2026-32838: Edimax GS-5008PL <= 1.00.54 Transmits Credentials Over Cleartext HTTP
Edimax GS-5008PL firmware version 1.00.54 and prior use cleartext HTTP for the web management interface without implementing TLS or SSL encryption. Attackers on the same network can intercept management traffic to capture administrator credentials and sensitive configuration data.
Metrics
- CVSS v4.0
- 8.7
- Severity
- HIGH
- Fixed in
- —
- Affected Products
- 1
Affected packages
- EDIMAX Technology Co., Ltd. / Edimax GS-5008PL≤ 1.0.54
CVSS Vector
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:NReferences