← Back

Trendnet

trendnet

190 CVEs • 129 products

Products (129)

Click to collapse
Toggle
Tew 812dru
tew-812dru
Tv Ip422w
tv-ip422w
Tv Ip422wn
tv-ip422wn
Tv Ip743sic
tv-ip743sic
Tew 731br
tew-731br
Tew 651br
tew-651br
Tew 652br
tew-652br
Tew 711br
tew-711br
Tew 810dr
tew-810dr
Tew 813dru
tew-813dru
Tew 823dru
tew-823dru
Tew 751dr
tew-751dr
Tew 752dru
tew-752dru
Tew733gr
tew733gr
Tew 673gru
tew-673gru
Tv Ip110wn
tv-ip110wn
Tv Ip121wn
tv-ip121wn
Tew 632brp
tew-632brp
Tew 827dru
tew-827dru
Tew 691gr
tew-691gr
Tew 692gr
tew-692gr
Tew 652brp
tew-652brp
Tew 652bru
tew-652bru
Ts S402
ts-s402
Tv Ip512wn
tv-ip512wn
Tw100 S4w1ca
tw100-s4w1ca
Tew 755ap
tew-755ap
Tew 755ap2kac
tew-755ap2kac
Tew 825dap
tew-825dap
Ti Pg1284i
ti-pg1284i
Ti G102i
ti-g102i
Ti G160i
ti-g160i
Ti G642i
ti-g642i
Ti Pg102i
ti-pg102i
Ti Pg541i
ti-pg541i

CVEs (190)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Trendnet
4Tew 755ap2kac Firmware
Tew 755ap FirmwareTew 821dap2kac Firmware+1 more
Jun 17, 2026
Aug 10, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Null Pointer Deference vulnerability exists in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03, and TEW-825DAP 1.11B03, which could let a remote malicious user cause a denial os service by sendi...Show more
Null Pointer Deference vulnerability exists in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03, and TEW-825DAP 1.11B03, which could let a remote malicious user cause a denial os service by sending the POST request to apply_cgi via action do_graph_auth without login_name key.Show less
1Trendnet
4Tew 755ap2kac Firmware
Tew 755ap FirmwareTew 821dap2kac Firmware+1 more
Jun 17, 2026
Aug 10, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Null Pointer Dereference vulnerability in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03, and TEW-825DAP 1.11B03, which could let a remote malicious user cause a denial of service by sending a...Show more
Null Pointer Dereference vulnerability in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03, and TEW-825DAP 1.11B03, which could let a remote malicious user cause a denial of service by sending a POST request to apply_cgi via an action ping_test without a ping_ipaddr key.Show less
1Trendnet
1Tv Ip110wn Firmware
Jul 9, 2026
Aug 10, 2021
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
Cross Site Scripting (XSS) vulnerability in TRENDnet TV-IP110WN V1.2.2.64 V1.2.2.65 V1.2.2.68 via the profile parameter. in a GET request in view.cgi.
1Trendnet
1Tw100 S4w1ca Firmware
Jun 17, 2026
Jun 17, 2021
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
In TrendNet TW100-S4W1CA 2.3.32, it is possible to inject arbitrary JavaScript into the router's web interface via the "echo" command.
1Trendnet
1Tw100 S4w1ca Firmware
Jun 17, 2026
Jun 17, 2021
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
In TrendNet TW100-S4W1CA 2.3.32, due to a lack of proper session controls, a threat actor could make unauthorized changes to an affected router via a specially crafted web page. If an authenticated user were to interact...Show more
In TrendNet TW100-S4W1CA 2.3.32, due to a lack of proper session controls, a threat actor could make unauthorized changes to an affected router via a specially crafted web page. If an authenticated user were to interact with a malicious web page it could allow for a complete takeover of the router.Show less
1Trendnet
1Tew 827dru Firmware
Jun 17, 2026
Jun 15, 2020
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
TRENDnet TEW-827DRU devices through 2.06B04 contain a stack-based buffer overflow in the ssi binary. The overflow allows an authenticated user to execute arbitrary code by POSTing to apply.cgi via the action st_dev_conne...Show more
TRENDnet TEW-827DRU devices through 2.06B04 contain a stack-based buffer overflow in the ssi binary. The overflow allows an authenticated user to execute arbitrary code by POSTing to apply.cgi via the action st_dev_connect, st_dev_disconnect, or st_dev_rconnect with a sufficiently long wan_type key.Show less
1Trendnet
1Tew 827dru Firmware
Jun 17, 2026
Jun 15, 2020
N/A· v4
8.8 HIGH· v3
9.0 HIGH· v2
TRENDnet TEW-827DRU devices through 2.06B04 contain multiple command injections in apply.cgi via the action send_log_email with the key auth_acname (or auth_passwd), allowing an authenticated user to run arbitrary comman...Show more
TRENDnet TEW-827DRU devices through 2.06B04 contain multiple command injections in apply.cgi via the action send_log_email with the key auth_acname (or auth_passwd), allowing an authenticated user to run arbitrary commands on the device.Show less
1Trendnet
1Tew 827dru Firmware
Jun 17, 2026
Jun 15, 2020
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
TRENDnet TEW-827DRU devices through 2.06B04 contain a stack-based buffer overflow in the ssi binary. The overflow allows an unauthenticated user to execute arbitrary code by POSTing to apply_sec.cgi via the action ping_t...Show more
TRENDnet TEW-827DRU devices through 2.06B04 contain a stack-based buffer overflow in the ssi binary. The overflow allows an unauthenticated user to execute arbitrary code by POSTing to apply_sec.cgi via the action ping_test with a sufficiently long ping_ipaddr key.Show less
1Trendnet
1Tew 827dru Firmware
Jun 17, 2026
Jun 15, 2020
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
TRENDnet TEW-827DRU devices through 2.06B04 contain a stack-based buffer overflow in the ssi binary. The overflow allows an authenticated user to execute arbitrary code by POSTing to apply.cgi via the action auto_up_fw (...Show more
TRENDnet TEW-827DRU devices through 2.06B04 contain a stack-based buffer overflow in the ssi binary. The overflow allows an authenticated user to execute arbitrary code by POSTing to apply.cgi via the action auto_up_fw (or auto_up_lp) with a sufficiently long update_file_name key.Show less
1Trendnet
1Tew 827dru Firmware
Jun 17, 2026
Jun 15, 2020
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
TRENDnet TEW-827DRU devices through 2.06B04 contain a stack-based buffer overflow in the ssi binary. The overflow allows an authenticated user to execute arbitrary code by POSTing to apply.cgi via the action wifi_captive...Show more
TRENDnet TEW-827DRU devices through 2.06B04 contain a stack-based buffer overflow in the ssi binary. The overflow allows an authenticated user to execute arbitrary code by POSTing to apply.cgi via the action wifi_captive_portal_login with a sufficiently long REMOTE_ADDR key.Show less
1Trendnet
1Tew 827dru Firmware
Jun 17, 2026
Jun 15, 2020
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
TRENDnet TEW-827DRU devices through 2.06B04 contain a stack-based buffer overflow in the ssi binary. The overflow allows an authenticated user to execute arbitrary code by POSTing to apply.cgi via the action set_sta_enro...Show more
TRENDnet TEW-827DRU devices through 2.06B04 contain a stack-based buffer overflow in the ssi binary. The overflow allows an authenticated user to execute arbitrary code by POSTing to apply.cgi via the action set_sta_enrollee_pin_wifi1 (or set_sta_enrollee_pin_wifi0) with a sufficiently long wps_sta_enrollee_pin key.Show less
1Trendnet
1Tew 827dru Firmware
Jun 17, 2026
Jun 15, 2020
N/A· v4
8.8 HIGH· v3
9.0 HIGH· v2
TRENDnet TEW-827DRU devices through 2.06B04 contain multiple command injections in apply.cgi via the action pppoe_connect, ru_pppoe_connect, or dhcp_connect with the key wan_ifname (or wan0_dns), allowing an authenticate...Show more
TRENDnet TEW-827DRU devices through 2.06B04 contain multiple command injections in apply.cgi via the action pppoe_connect, ru_pppoe_connect, or dhcp_connect with the key wan_ifname (or wan0_dns), allowing an authenticated user to run arbitrary commands on the device.Show less
1Trendnet
1Tew 827dru Firmware
Jun 17, 2026
Jun 15, 2020
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
TRENDnet TEW-827DRU devices through 2.06B04 contain a stack-based buffer overflow in the ssi binary. The overflow allows an authenticated user to execute arbitrary code by POSTing to apply.cgi via the action kick_ban_wif...Show more
TRENDnet TEW-827DRU devices through 2.06B04 contain a stack-based buffer overflow in the ssi binary. The overflow allows an authenticated user to execute arbitrary code by POSTing to apply.cgi via the action kick_ban_wifi_mac_allow with a sufficiently long qcawifi.wifi0_vap0.maclist key.Show less
1Trendnet
1Tv Ip512wn Firmware
Jun 17, 2026
May 13, 2020
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
TRENDnet ProView Wireless camera TV-IP512WN 1.0R 1.0.4 is vulnerable to an unauthenticated stack-based buffer overflow in handling RTSP packets. This may result in remote code execution or denial of service. The issue is...Show more
TRENDnet ProView Wireless camera TV-IP512WN 1.0R 1.0.4 is vulnerable to an unauthenticated stack-based buffer overflow in handling RTSP packets. This may result in remote code execution or denial of service. The issue is in the binary rtspd (in /sbin) when parsing a long "Authorization: Basic" RTSP header.Show less
2Dlink
Trendnet
2Dir 825 Firmware
Tew 632brp Firmware
Jun 17, 2026
Mar 7, 2020
N/A· v4
8.8 HIGH· v3
9.0 HIGH· v2
An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. They allow remote attackers to execute arbitrary commands via the date parameter in a system_time.cgi POST request. TRENDnet TEW-632BRP 1.010B32 is also affec...Show more
An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. They allow remote attackers to execute arbitrary commands via the date parameter in a system_time.cgi POST request. TRENDnet TEW-632BRP 1.010B32 is also affected.Show less
2Dlink
Trendnet
2Dir 825 Firmware
Tew 632brp Firmware
Jun 17, 2026
Mar 7, 2020
N/A· v4
8.8 HIGH· v3
9.0 HIGH· v2
An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. They allow remote attackers to execute arbitrary commands via the dns_query_name parameter in a dns_query.cgi POST request. TRENDnet TEW-632BRP 1.010B32 is al...Show more
An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. They allow remote attackers to execute arbitrary commands via the dns_query_name parameter in a dns_query.cgi POST request. TRENDnet TEW-632BRP 1.010B32 is also affected.Show less
2Dlink
Trendnet
2Dir 825 Firmware
Tew 632brp Firmware
Jun 17, 2026
Mar 7, 2020
N/A· v4
8.8 HIGH· v3
9.0 HIGH· v2
An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. They allow remote attackers to execute arbitrary commands via the wps_sta_enrollee_pin parameter in a set_sta_enrollee_pin.cgi POST request. TRENDnet TEW-632B...Show more
An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. They allow remote attackers to execute arbitrary commands via the wps_sta_enrollee_pin parameter in a set_sta_enrollee_pin.cgi POST request. TRENDnet TEW-632BRP 1.010B32 is also affected.Show less
1Trendnet
1Ts S402 Firmware
Nov 21, 2024
Feb 13, 2020
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
TRENDnet TS-S402 has a backdoor to enable TELNET.
1Trendnet
3Tew 651br Firmware
Tew 652brp FirmwareTew 652bru Firmware
Jun 17, 2026
Dec 18, 2019
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
An issue was discovered on TRENDnet TEW-651BR 2.04B1, TEW-652BRP 3.04b01, and TEW-652BRU 1.00b12 devices. A buffer overflow occurs through the get_set.ccp ccp_act parameter.
1Trendnet
3Tew 651br Firmware
Tew 652brp FirmwareTew 652bru Firmware
Jun 17, 2026
Dec 18, 2019
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
An issue was discovered on TRENDnet TEW-651BR 2.04B1, TEW-652BRP 3.04b01, and TEW-652BRU 1.00b12 devices. OS command injection occurs through the get_set.ccp lanHostCfg_HostName_1.1.1.0.0 parameter.