Description
A flaw has been found in TRENDnet TEW-821DAP 1.11B03. The impacted element is the function sub_43F2C4 of the file /goform/tools_nslookup of the component DNS Lookup Handler. This manipulation of the argument nslookup_target/dns_server causes os command injection. The attack can be initiated remotely. The vendor explains: -We are unable to confirm the existence of the vulnerabilities for (...) TEW-821DAP (v1.0R) as these items have been EOL. - This vulnerability only affects products that are no longer supported by the maintainer.
CVSS 6.3EPSS 1.072%Risque 0.69
Voir la source- Publication
- 2026-07-12 08:16:10
- Versions concernées
- ==1.11B03
- Type
- Micrologiciel
- Vecteur
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L