TRENDnet tew-821dap是美国TRENDnet公司的一款无线接入点。 TRENDnet TEW-821DAP 1.11B03版本存在命令注入漏洞,该漏洞源于Firmware Update Handler组件文件/goform/tools_ddns中参数hostname/username/password的操作,导致远程攻击者能够进行os命令注入。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| TRENDnet | TEW-821DAP | 1.11B03 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| TRENDnet | TEW-821DAP | 1.11B03 |
cpe:2.3:o:trendnet:tew-821dap_firmware:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-15484 | 8.8 HIGH | TRENDnet TEW-821DAP ssi tools_nslookup sub_41EC14 buffer overflow |
| CVE-2026-15483 | 8.8 HIGH | TRENDnet TEW-821DAP ssi tools_nslookup sub_41EC14 buffer overflow |
| CVE-2026-15481 | 8.8 HIGH | Trendnet TEW-635BRM IPoA WAN Connection Setup rc ipoa_test command injection |
| CVE-2026-15480 | 8.8 HIGH | Trendnet TEW-635BRM Web Service rc start_httpd stack-based overflow |
| CVE-2026-15487 | 6.3 MEDIUM | TRENDnet TEW-821DAP Firmware Update system_ntp sub_41FBD0 os command injection |
| CVE-2026-15485 | 6.3 MEDIUM | TRENDnet TEW-821DAP DNS Lookup tools_nslookup sub_43F2C4 os command injection |
No comments yet