CVE-2020-37097
Unknown Unknown - Not Provided
Information Disclosure in Edimax EW-7438RPn via wlencrypt_wiz.asp

Publication date: 2026-02-03

Last updated on: 2026-02-20

Assigner: VulnCheck

Description
Edimax EW-7438RPn 1.13 contains an information disclosure vulnerability that exposes WiFi network configuration details through the wlencrypt_wiz.asp file. Attackers can access the script to retrieve sensitive information including WiFi network name and plaintext password stored in device configuration variables.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2026-02-03
Last Modified
2026-02-20
Generated
2026-06-16
AI Q&A
2026-02-04
EPSS Evaluated
2026-06-15
NVD
Affected Vendors & Products
Showing 1 associated CPE
Vendor Product Version / Range
edimax ew-7438rpn_mini_firmware 1.13
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-522 The product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.
Attack-Flow Graph
AI Quick Actions
Instant insights powered by AI
Executive Summary

This vulnerability exists in the Edimax EW-7438RPn version 1.13 device. It is an information disclosure flaw where attackers can access the wlencrypt_wiz.asp file to retrieve sensitive WiFi network configuration details.

Specifically, the vulnerability allows attackers to obtain the WiFi network name (SSID) and the plaintext password stored in the device's configuration variables.

Impact Analysis

An attacker exploiting this vulnerability can gain unauthorized access to your WiFi network by retrieving the network name and plaintext password.

This can lead to unauthorized network access, potential interception of network traffic, and compromise of devices connected to the network.

Compliance Impact

I don't know

Detection Guidance

I don't know

Mitigation Strategies

I don't know

Chat Assistant
Ask questions about this CVE
Hi! I’m here to help you understand CVE-2020-37097. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70
EPSS Chart