Edimax GS-5008PL firmware version 1.00.54 and prior contain a cross-site request forgery vulnerability that allows remote attackers to perform unauthorized administrative actions by inducing logged-in administrators to visit malicious pages. Attackers can exploit the lack of anti-CSRF tokens and request validation to change passwords, upload firmware, reboot the device, perform factory resets, or modify network configurations.
Use CWE-352, Edimax vendor hub and Gs-5008pl Firmware product page to widen CVE-2026-32839 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2026-32841, CVE-2026-32838 and CVE-2026-32842 for nearby disclosures in the same product family.