216.73.216.233

CVE-2026-7607

· Published 02/05/2026 08:16 · Modified 02/05/2026 08:16

Labels: CVE-2026-7607 2026-05-02CVE-2026-7607CWE-119[email protected]

Essential information

Published
02/05/2026 08:16
Modified
02/05/2026 08:16
Author
Creator
CVSS
8.7 HIGH (v3) 8.7 HIGH (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

A security vulnerability has been detected in TRENDnet TEW-821DAP 1.12B01. Impacted is the function auto_update_firmware of the component Firmware Udpate. The manipulation of the argument str leads to buffer overflow. The attack may be initiated remotely. The vendor explains: "That firmware version will only work on our hardware version v1.xR. We have already EOL that product 8 years ago and are no longer selling". This vulnerability only affects products that are no longer supported by the maintainer.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
trendnet / tew-821dap cpe:2.3:a:trendnet:tew-821dap:*:*:*:*:*:*:*:*

References