Записи TRENDnet
190 опубликованных записей вендора trendnet.
Профиль для исследователя
- Попали в KEV
- 1 · 0,5 %
- С эксплойтом
- 2 · 1,1 %
- Pre-auth RCE
- 26
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- 1646 дн.
Повторяющиеся классы
- CWE-787 Out-of-bounds Write37
- CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')26
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')23
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer17
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')13
- CWE-121 Stack-based Buffer Overflow8
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
190 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
94Срочно | CVE-2015-1187Готовый эксплойт | The ping tool in multiple D-Link and TRENDnet devices allow remote attackers to execute arbitrary code via the ping_addr parameter to ping.ctrendnet · tew-731br firmware · CWE-287 | Критическая9,8 | KEV | 82,9 % | 21 сент. 2017 г. |
61На этой неделе | CVE-2012-4876Готовый эксплойт | Stack-based buffer overflow in the UltraMJCam ActiveX Control in TRENDnet SecurView TV-IP121WN Wireless Internet Camera allows remote attacktrendnet · securview wireless internet camera activex control · CWE-119 | Критическая10,0 | — | 71,2 % | 6 сент. 2012 г. |
45В плане | CVE-2023-49237Эксплойта нет | An issue was discovered on TRENDnet TV-IP1314PI 5.5.3 200714 devices.trendnet · tv-ip1314pi firmware · CWE-77 | Критическая9,8 | — | 18,6 % | 9 янв. 2024 г. |
44В плане | CVE-2019-11400Эксплойта нет | An issue was discovered on TRENDnet TEW-651BR 2.04B1, TEW-652BRP 3.04b01, and TEW-652BRU 1.00b12 devices.trendnet · tew-651br firmware · CWE-119 | Критическая9,8 | — | 16,6 % | 18 дек. 2019 г. |
43В плане | CVE-2013-4659Proof of concept | Buffer overflow in Broadcom ACSD allows remote attackers to execute arbitrary code via a long string to TCP port 5916.asus · rt-ac66u firmware · CWE-119 | Критическая9,8 | — | 13,9 % | 14 мар. 2017 г. |
42В плане | CVE-2021-20158Proof of concept | Trendnet AC2600 TEW-827DRU version 2.08B01 contains an authentication bypass vulnerability.trendnet · tew-827dru firmware · CWE-306 | Критическая9,8 | — | 10,9 % | 30 дек. 2021 г. |
42В плане | CVE-2019-13278Эксплойта нет | TRENDnet TEW-827DRU with firmware up to and including 2.04B03 contains multiple command injections when processing user input for the setup trendnet · tew-827dru firmware · CWE-78 | Критическая9,8 | — | 8,8 % | 10 июл. 2019 г. |
41В плане | CVE-2024-50667Эксплойта нет | The boa httpd of Trendnet TEW-820AP 1.01.B01 has a stack overflow vulnerability in /boafrm/formIPv6Addr, /boafrm/formIpv6Setup, /boafrm/formtrendnet · tew-820ap firmware · CWE-120 | Критическая9,8 | — | 6,7 % | 11 нояб. 2024 г. |
41В плане | CVE-2023-0640Эксплойта нет | TRENDnet TEW-652BRP Web Interface ping.ccp command injectiontrendnet · tew-652brp firmware · CWE-77 | Критическая9,8 | — | 6,5 % | 2 февр. 2023 г. |
41В плане | CVE-2024-28354Эксплойта нет | There is a command injection vulnerability in the TRENDnet TEW-827DRU router with firmware version 2.10B01.trendnet · tew-827dru firmware · CWE-77 | Критическая10,0 | — | 2,2 % | 15 мар. 2024 г. |
40В плане | CVE-2018-19240Эксплойта нет | Buffer overflow in network.cgi on TRENDnet TV-IP110WN V1.2.2 build 68, V1.2.2.65, and V1.2.2 build 64 and TV-IP121WN V1.2.2 build 28 devicestrendnet · tv-ip110wn firmware · CWE-119 | Критическая9,8 | — | 3,7 % | 20 дек. 2018 г. |
40В плане | CVE-2020-12763Эксплойта нет | TRENDnet ProView Wireless camera TV-IP512WN 1.0R 1.0.4 is vulnerable to an unauthenticated stack-based buffer overflow in handling RTSP packtrendnet · tv-ip512wn firmware · CWE-787 | Критическая9,8 | — | 3,4 % | 13 мая 2020 г. |
40В плане | CVE-2019-11399Эксплойта нет | An issue was discovered on TRENDnet TEW-651BR 2.04B1, TEW-652BRP 3.04b01, and TEW-652BRU 1.00b12 devices.trendnet · tew-651br firmware · CWE-78 | Критическая9,8 | — | 3,0 % | 18 дек. 2019 г. |
40В плане | CVE-2023-0638Эксплойта нет | TRENDnet TEW-811DRU Web Interface command injectiontrendnet · tew-811dru firmware · CWE-77 | Критическая9,8 | — | 2,9 % | 2 февр. 2023 г. |
40В плане | CVE-2019-13276Эксплойта нет | TRENDnet TEW-827DRU with firmware up to and including 2.04B03 contains a stack-based buffer overflow in the ssi binary.trendnet · tew-827dru firmware · CWE-787 | Критическая9,8 | — | 2,8 % | 10 июл. 2019 г. |
40В плане | CVE-2019-13279Эксплойта нет | TRENDnet TEW-827DRU with firmware up to and including 2.04B03 contains multiple stack-based buffer overflows when processing user input for trendnet · tew-827dru firmware · CWE-787 | Критическая9,8 | — | 2,7 % | 10 июл. 2019 г. |
40В плане | CVE-2013-3367Эксплойта нет | Undocumented TELNET service in TRENDnet TEW-691GR and TEW-692GR when a web page named backdoor contains an HTML parameter of password and a trendnet · tew-691gr firmware · CWE-287 | Критическая9,8 | — | 2,7 % | 13 нояб. 2019 г. |
40В плане | CVE-2020-14080Эксплойта нет | TRENDnet TEW-827DRU devices through 2.06B04 contain a stack-based buffer overflow in the ssi binary.trendnet · tew-827dru firmware · CWE-787 | Критическая9,8 | — | 2,3 % | 15 июн. 2020 г. |
40В плане | CVE-2022-37053Эксплойта нет | TRENDnet TEW733GR v1.03B01 is vulnerable to Command injection via /htdocs/upnpinc/gena.php.trendnet · tew733gr firmware · CWE-94 | Критическая9,8 | — | 2,3 % | 28 авг. 2022 г. |
40В плане | CVE-2022-46598Эксплойта нет | TRENDnet TEW755AP 1.13B01 was discovered to contain a command injection vulnerability via the wps_sta_enrollee_pin parameter in the action strendnet · tew-755ap firmware · CWE-78 | Критическая9,8 | — | 2,3 % | 30 дек. 2022 г. |
40В плане | CVE-2022-46597Эксплойта нет | TRENDnet TEW755AP 1.13B01 was discovered to contain a command injection vulnerability via the sys_service parameter in the setup_wizard_mydltrendnet · tew-755ap firmware · CWE-78 | Критическая9,8 | — | 2,3 % | 30 дек. 2022 г. |
40В плане | CVE-2014-8579Эксплойта нет | TRENDnet TEW-823DRU devices with firmware before 1.00b36 have a hardcoded password of kcodeskcodes for the root account, which makes it easitrendnet · tew-823dru firmware · CWE-798 | Критическая9,8 | — | 2,0 % | 5 янв. 2018 г. |
40В плане | CVE-2022-30329Эксплойта нет | An issue was found on TRENDnet TEW-831DR 1.0 601.130.1.1356 devices.trendnet · tew-831dr firmware · CWE-78 | Критическая9,8 | — | 2,0 % | 16 июн. 2022 г. |
40В плане | CVE-2021-20155Эксплойта нет | Trendnet AC2600 TEW-827DRU version 2.08B01 makes use of hardcoded credentials.trendnet · tew-827dru firmware · CWE-798 | Критическая9,8 | — | 1,9 % | 30 дек. 2021 г. |
40В плане | CVE-2021-20151Эксплойта нет | Trendnet AC2600 TEW-827DRU version 2.08B01 contains a flaw in the session management for the device.trendnet · tew-827dru firmware · CWE-384 | Критическая10,0 | — | 1,6 % | 30 дек. 2021 г. |
- CVE-2015-118794Срочно
The ping tool in multiple D-Link and TRENDnet devices allow remote attackers to execute arbitrary code via the ping_addr parameter to ping.c
КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 83 %trendnet · tew-731br firmware21 сент. 2017 г.
- CVE-2012-487661На этой неделе
Stack-based buffer overflow in the UltraMJCam ActiveX Control in TRENDnet SecurView TV-IP121WN Wireless Internet Camera allows remote attack
КритическаяCVSS 10,0Готовый эксплойтEPSS 71 %trendnet · securview wireless internet camera activex control6 сент. 2012 г.
- CVE-2023-4923745В плане
An issue was discovered on TRENDnet TV-IP1314PI 5.5.3 200714 devices.
КритическаяCVSS 9,8Эксплойта нетEPSS 19 %trendnet · tv-ip1314pi firmware9 янв. 2024 г.
- CVE-2019-1140044В плане
An issue was discovered on TRENDnet TEW-651BR 2.04B1, TEW-652BRP 3.04b01, and TEW-652BRU 1.00b12 devices.
КритическаяCVSS 9,8Эксплойта нетEPSS 17 %trendnet · tew-651br firmware18 дек. 2019 г.
- CVE-2013-465943В плане
Buffer overflow in Broadcom ACSD allows remote attackers to execute arbitrary code via a long string to TCP port 5916.
КритическаяCVSS 9,8Proof of conceptEPSS 14 %asus · rt-ac66u firmware14 мар. 2017 г.
- CVE-2021-2015842В плане
Trendnet AC2600 TEW-827DRU version 2.08B01 contains an authentication bypass vulnerability.
КритическаяCVSS 9,8Proof of conceptEPSS 11 %trendnet · tew-827dru firmware30 дек. 2021 г.
- CVE-2019-1327842В плане
TRENDnet TEW-827DRU with firmware up to and including 2.04B03 contains multiple command injections when processing user input for the setup
КритическаяCVSS 9,8Эксплойта нетEPSS 9 %trendnet · tew-827dru firmware10 июл. 2019 г.
- CVE-2024-5066741В плане
The boa httpd of Trendnet TEW-820AP 1.01.B01 has a stack overflow vulnerability in /boafrm/formIPv6Addr, /boafrm/formIpv6Setup, /boafrm/form
КритическаяCVSS 9,8Эксплойта нетEPSS 7 %trendnet · tew-820ap firmware11 нояб. 2024 г.
- CVE-2023-064041В плане
TRENDnet TEW-652BRP Web Interface ping.ccp command injection
КритическаяCVSS 9,8Эксплойта нетEPSS 7 %trendnet · tew-652brp firmware2 февр. 2023 г.
- CVE-2024-2835441В плане
There is a command injection vulnerability in the TRENDnet TEW-827DRU router with firmware version 2.10B01.
КритическаяCVSS 10,0Эксплойта нетEPSS 2 %trendnet · tew-827dru firmware15 мар. 2024 г.
- CVE-2018-1924040В плане
Buffer overflow in network.cgi on TRENDnet TV-IP110WN V1.2.2 build 68, V1.2.2.65, and V1.2.2 build 64 and TV-IP121WN V1.2.2 build 28 devices
КритическаяCVSS 9,8Эксплойта нетEPSS 4 %trendnet · tv-ip110wn firmware20 дек. 2018 г.
- CVE-2020-1276340В плане
TRENDnet ProView Wireless camera TV-IP512WN 1.0R 1.0.4 is vulnerable to an unauthenticated stack-based buffer overflow in handling RTSP pack
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %trendnet · tv-ip512wn firmware13 мая 2020 г.
- CVE-2019-1139940В плане
An issue was discovered on TRENDnet TEW-651BR 2.04B1, TEW-652BRP 3.04b01, and TEW-652BRU 1.00b12 devices.
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %trendnet · tew-651br firmware18 дек. 2019 г.
- CVE-2023-063840В плане
TRENDnet TEW-811DRU Web Interface command injection
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %trendnet · tew-811dru firmware2 февр. 2023 г.
- CVE-2019-1327640В плане
TRENDnet TEW-827DRU with firmware up to and including 2.04B03 contains a stack-based buffer overflow in the ssi binary.
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %trendnet · tew-827dru firmware10 июл. 2019 г.
- CVE-2019-1327940В плане
TRENDnet TEW-827DRU with firmware up to and including 2.04B03 contains multiple stack-based buffer overflows when processing user input for
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %trendnet · tew-827dru firmware10 июл. 2019 г.
- CVE-2013-336740В плане
Undocumented TELNET service in TRENDnet TEW-691GR and TEW-692GR when a web page named backdoor contains an HTML parameter of password and a
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %trendnet · tew-691gr firmware13 нояб. 2019 г.
- CVE-2020-1408040В плане
TRENDnet TEW-827DRU devices through 2.06B04 contain a stack-based buffer overflow in the ssi binary.
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %trendnet · tew-827dru firmware15 июн. 2020 г.
- CVE-2022-3705340В плане
TRENDnet TEW733GR v1.03B01 is vulnerable to Command injection via /htdocs/upnpinc/gena.php.
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %trendnet · tew733gr firmware28 авг. 2022 г.
- CVE-2022-4659840В плане
TRENDnet TEW755AP 1.13B01 was discovered to contain a command injection vulnerability via the wps_sta_enrollee_pin parameter in the action s
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %trendnet · tew-755ap firmware30 дек. 2022 г.
- CVE-2022-4659740В плане
TRENDnet TEW755AP 1.13B01 was discovered to contain a command injection vulnerability via the sys_service parameter in the setup_wizard_mydl
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %trendnet · tew-755ap firmware30 дек. 2022 г.
- CVE-2014-857940В плане
TRENDnet TEW-823DRU devices with firmware before 1.00b36 have a hardcoded password of kcodeskcodes for the root account, which makes it easi
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %trendnet · tew-823dru firmware5 янв. 2018 г.
- CVE-2022-3032940В плане
An issue was found on TRENDnet TEW-831DR 1.0 601.130.1.1356 devices.
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %trendnet · tew-831dr firmware16 июн. 2022 г.
- CVE-2021-2015540В плане
Trendnet AC2600 TEW-827DRU version 2.08B01 makes use of hardcoded credentials.
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %trendnet · tew-827dru firmware30 дек. 2021 г.
- CVE-2021-2015140В плане
Trendnet AC2600 TEW-827DRU version 2.08B01 contains a flaw in the session management for the device.
КритическаяCVSS 10,0Эксплойта нетEPSS 2 %trendnet · tew-827dru firmware30 дек. 2021 г.