Description
A vulnerability was identified in Trendnet TEW-635BRM up to 1.00.03. This affects the function start_httpd of the file /sbin/rc of the component Web Service. Such manipulation of the argument device_name leads to stack-based buffer overflow. The attack can be executed remotely. The exploit is publicly available and might be used. The vendor explains: -We are unable to confirm if the vulnerability exists. This item has been EOL since 2011. We will make an official announcement of possible vulnerabilities, and recommend users to switch devices.- This vulnerability only affects products that are no longer supported by the maintainer.
CVSS 8.8EPSS 0.47200000000000003%Risque 0.92
Voir la source- Publication
- 2026-07-12 06:16:42
- Versions concernées
- <=1.00.03
- Type
- Micrologiciel
- Vecteur
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H