CVE-2025-1316

unknown KEV
Published 2025-03-19 · Modified 2025-03-19
CVSS v3
CVSS v2
VIR risk
1.5

Description

Edimax IC-7100 IP camera contains an OS command injection vulnerability due to improper input sanitization that allows an attacker to achieve remote code execution via specially crafted requests. The impacted product could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.

CISA KEV

Vendor
Edimax
Product
IC-7100 IP Camera
Due date
2025-04-09

Predictions

Exploit likelihood
99%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: cisa-kev — https://www.edimax.com/edimax/post/post/data/edimax/global/press_releases/4801/ ; https://nvd.nist.gov/vuln/detail/CVE-2025-1316

Exploits

References

Verify integrity in audit chain (admin only). AS-IS.