Vulnerability index

Browse CVEs

175 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Tew 827dru Firmware HIGH 7.5
CVE-2021-20154

Trendnet AC2600 TEW-827DRU version 2.08B01 contains an security flaw in the web interface. HTTPS is not enabled on the device by default. This result…

Mitigation only
Fix from $1,950 2021-12-30
Tew 827dru Firmware HIGH 7.5
CVE-2021-20157

It is possible for an unauthenticated, malicious user to force the device to reboot due to a hidden administrative command.

No fix yet
Fix from $1,950 2021-12-30
Tew 827dru Firmware MEDIUM 6.8
CVE-2021-20153

Trendnet AC2600 TEW-827DRU version 2.08B01 contains a symlink vulnerability in the bittorrent functionality. If enabled, the bittorrent functionality…

Mitigation only
Fix from $1,600 2021-12-30
Tew 827dru Firmware MEDIUM 6.5
CVE-2021-20152

Trendnet AC2600 TEW-827DRU version 2.08B01 lacks proper authentication to the bittorrent functionality. If enabled, anyone is able to visit and modif…

Mitigation only
Fix from $1,600 2021-12-30
Tew 827dru Firmware MEDIUM 6.5
CVE-2021-20156

Trendnet AC2600 TEW-827DRU version 2.08B01 contains an improper access control configuration that could allow for a malicious firmware update. It is …

Mitigation only
Fix from $1,600 2021-12-30
Tew 827dru Firmware MEDIUM 5.3
CVE-2021-20150EPSS 40%

Trendnet AC2600 TEW-827DRU version 2.08B01 improperly discloses information via redirection from the setup wizard. Authentication can be bypassed and…

Mitigation only
Fix from $1,600 2021-12-30
Tew 755ap Firmware HIGH 7.5
CVE-2021-28845

Null Pointer Dereference vulnerability exists in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03, and TEW-825DAP 1.11B03, w…

Mitigation only
Fix from $1,950 2021-08-10
Tew 755ap Firmware MEDIUM 6.5
CVE-2021-28846

A Format String vulnerablity exists in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03, and TEW-825DAP 1.11B03, which could…

Mitigation only
Fix from $1,600 2021-08-10
Tew 755ap Firmware HIGH 7.5
CVE-2021-28841

Null Pointer Dereference vulnerability in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03, and TEW-825DAP 1.11B03, which co…

Mitigation only
Fix from $1,950 2021-08-10
Tew 755ap Firmware HIGH 7.5
CVE-2021-28842

Null Pointer Deference vulnerability exists in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03, and TEW-825DAP 1.11B03, whi…

Mitigation only
Fix from $1,950 2021-08-10
Tew 755ap Firmware HIGH 7.5
CVE-2021-28843

Null Pointer Dereference vulnerability exists in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03, and TEW-825DAP 1.11B03 by…

Mitigation only
Fix from $1,950 2021-08-10
Tew 755ap Firmware HIGH 7.5
CVE-2021-28844

Null Pointer Dereference vulnerability exists in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03, and TEW-825DAP 1.11B03 by…

Mitigation only
Fix from $1,950 2021-08-10
Tv Ip110wn Firmware MEDIUM 6.1
CVE-2021-31655

Cross Site Scripting (XSS) vulnerability in TRENDnet TV-IP110WN V1.2.2.64 V1.2.2.65 V1.2.2.68 via the profile parameter. in a GET request in view.cgi.

No fix yet
Fix from $1,600 2021-08-10
Tw100 S4w1ca Firmware HIGH 8.8
CVE-2021-32424

In TrendNet TW100-S4W1CA 2.3.32, due to a lack of proper session controls, a threat actor could make unauthorized changes to an affected router via a…

Mitigation only
Fix from $1,950 2021-06-17
Tw100 S4w1ca Firmware MEDIUM 6.1
CVE-2021-32426

In TrendNet TW100-S4W1CA 2.3.32, it is possible to inject arbitrary JavaScript into the router's web interface via the "echo" command.

No fix yet
Fix from $1,600 2021-06-17
Tew 827dru Firmware HIGH 8.8
CVE-2020-14076

TRENDnet TEW-827DRU devices through 2.06B04 contain a stack-based buffer overflow in the ssi binary. The overflow allows an authenticated user to exe…

Fix: after 2.06b04
Fix from $1,950 2020-06-15
Tew 827dru Firmware CRITICAL 9.8
CVE-2020-14080

TRENDnet TEW-827DRU devices through 2.06B04 contain a stack-based buffer overflow in the ssi binary. The overflow allows an unauthenticated user to e…

Fix: after 2.06b04
Fix from $2,300 2020-06-15
Tew 827dru Firmware HIGH 8.8
CVE-2020-14074

TRENDnet TEW-827DRU devices through 2.06B04 contain a stack-based buffer overflow in the ssi binary. The overflow allows an authenticated user to exe…

Fix: after 2.06b04
Fix from $1,950 2020-06-15
Tew 827dru Firmware HIGH 8.8
CVE-2020-14075

TRENDnet TEW-827DRU devices through 2.06B04 contain multiple command injections in apply.cgi via the action pppoe_connect, ru_pppoe_connect, or dhcp_…

Fix: after 2.06b04
Fix from $1,950 2020-06-15
Tew 827dru Firmware HIGH 8.8
CVE-2020-14077

TRENDnet TEW-827DRU devices through 2.06B04 contain a stack-based buffer overflow in the ssi binary. The overflow allows an authenticated user to exe…

Fix: after 2.06b04
Fix from $1,950 2020-06-15
Tew 827dru Firmware HIGH 8.8
CVE-2020-14078

TRENDnet TEW-827DRU devices through 2.06B04 contain a stack-based buffer overflow in the ssi binary. The overflow allows an authenticated user to exe…

Fix: after 2.06b04
Fix from $1,950 2020-06-15
Tew 827dru Firmware HIGH 8.8
CVE-2020-14079

TRENDnet TEW-827DRU devices through 2.06B04 contain a stack-based buffer overflow in the ssi binary. The overflow allows an authenticated user to exe…

Fix: after 2.06b04
Fix from $1,950 2020-06-15
Tew 827dru Firmware HIGH 8.8
CVE-2020-14081

TRENDnet TEW-827DRU devices through 2.06B04 contain multiple command injections in apply.cgi via the action send_log_email with the key auth_acname (…

Fix: after 2.06b04
Fix from $1,950 2020-06-15
Tv Ip512wn Firmware CRITICAL 9.8
CVE-2020-12763

TRENDnet ProView Wireless camera TV-IP512WN 1.0R 1.0.4 is vulnerable to an unauthenticated stack-based buffer overflow in handling RTSP packets. This…

No fix yet
Fix from $2,300 2020-05-13
Ts S402 Firmware HIGH 7.5
CVE-2013-6360

TRENDnet TS-S402 has a backdoor to enable TELNET.

No fix yet
Fix from $1,950 2020-02-13
Tew 651br Firmware CRITICAL 9.8
CVE-2019-11400EPSS 17%

An issue was discovered on TRENDnet TEW-651BR 2.04B1, TEW-652BRP 3.04b01, and TEW-652BRU 1.00b12 devices. A buffer overflow occurs through the get_se…

Mitigation only
Fix from $2,300 2019-12-18
Tew 651br Firmware CRITICAL 9.8
CVE-2019-11399

An issue was discovered on TRENDnet TEW-651BR 2.04B1, TEW-652BRP 3.04b01, and TEW-652BRU 1.00b12 devices. OS command injection occurs through the get…

Mitigation only
Fix from $2,300 2019-12-18
Tew 812dru Firmware HIGH 8.8
CVE-2013-3366

Undocumented TELNET service in TRENDnet TEW-812DRU when a web page named backdoor contains an HTML parameter of password and a value of j78G¬DFdg_24M…

Mitigation only
Fix from $1,950 2019-11-13
Tew 691gr Firmware CRITICAL 9.8
CVE-2013-3367

Undocumented TELNET service in TRENDnet TEW-691GR and TEW-692GR when a web page named backdoor contains an HTML parameter of password and a value of …

Mitigation only
Fix from $2,300 2019-11-13
Tew 827dru Firmware CRITICAL 9.8
CVE-2019-13276

TRENDnet TEW-827DRU with firmware up to and including 2.04B03 contains a stack-based buffer overflow in the ssi binary. The overflow allows an unauth…

Fix: after 2.04b03
Fix from $2,300 2019-07-10