A vulnerability classified as critical was found in Edimax BR-6478AC 1.23. Impacted is the function formUSBFolder of the file /goform/formUSBFolder of the component POST Request Handler. The manipulation of the argument ShareName/SelectName results in buffer overflow.

This vulnerability is identified as CVE-2026-10164. The attack can be executed remotely. Additionally, an exploit exists.