Description
A vulnerability has been found in TRENDnet TEW-821DAP 1.11B03. This affects the function sub_42026C of the file /goform/tools_ddns of the component Firmware Update Handler. Such manipulation of the argument hostname/username/password leads to os command injection. The attack can be launched remotely. The vendor explains: -We are unable to confirm the existence of the vulnerabilities for (...) TEW-821DAP (v1.0R) as these items have been EOL. - This vulnerability only affects products that are no longer supported by the maintainer.
CVSS 6.3EPSS 1.072%Risque 0.69
Voir la source- Publication
- 2026-07-12 09:16:38
- Versions concernées
- >=1.11B03,<2.0
- Type
- Micrologiciel
- Vecteur
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L