Latest Edimax Network cameras vulnerability: CVE-2025-1316 #
On March 7th, 2025, CISA disclosed a vulnerability in all versions of the Edimax IC-7100 network camera:
- CVE-2025-1316 is rated critical with a CVSSv3 base score of 9.3. Successful exploitation of this vulnerability would allow a remote attacker to execute arbitrary code.
What is the impact? #
Upon successful exploitation of this vulnerability, an attacker who could send unauthenticated requests to the camera could execute arbitrary code. All versions of the camera are affected.
Are updates or workarounds available? #
There is currently no vendor-supplied update or patch for this vulnerability. Users are recommended to remove these cameras from their environment if possible, or isolate them using network access control mechanisms.
How to find Edimax cameras with runZero #
From the Asset Inventory, use the following query to locate these cameras:
hw:"EDIMAX IC-71%Camera"