Cross-Site Request Forgery in Edimax GS-5008PL by Edimax
CVE-2026-32839
5.1MEDIUM
What is CVE-2026-32839?
The Edimax GS-5008PL is susceptible to a cross-site request forgery vulnerability, which enables remote attackers to execute unauthorized administrative tasks by tricking logged-in administrators into visiting malicious pages. This vulnerability arises from an absence of anti-CSRF tokens and request validation. As a result, attackers can change device passwords, upload firmware, reboot the device, conduct factory resets, or alter network configurations, compromising network security and device integrity.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Edimax GS-5008PL 0 <= 1.00.54
References
CVSS V4
Score:
5.1
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Kazuma Matsumoto, a security researcher at GMO Cybersecurity by IERAE, Inc.
