Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

TRENDnet — Vulnerabilities & Security Advisories 90

Browse all 90 CVE security advisories affecting TRENDnet. AI-powered Chinese analysis, POCs, and references for each vulnerability.

TRENDnet operates primarily as a manufacturer of consumer and small business networking hardware, including routers, switches, and IP cameras. Security audits have identified forty-five Common Vulnerabilities and Exposures (CVEs) associated with its product lines, highlighting systemic weaknesses in embedded software development. Historically, these vulnerabilities frequently manifest as remote code execution (RCE) and cross-site scripting (XSS), often stemming from inadequate input validation in web management interfaces. Privilege escalation flaws are also prevalent, allowing unauthenticated attackers to gain administrative control over devices. Notable incidents include the exploitation of default credentials and hardcoded secrets in older camera models, which facilitated large-scale botnet recruitment. The company’s security posture has faced criticism for delayed firmware updates and limited transparency regarding patch cycles. These recurring issues underscore significant challenges in securing IoT infrastructure, where resource constraints often compromise robust authentication and encryption mechanisms.

CVE ID Title CVSS Severity Published
CVE-2026-77988 TRENDnet TEW-823DRU CLI Configuration Tool nvram_get command injection — TEW-823DRU CWE-77 6.6 Medium 2026-08-22
CVE-2026-77946 TRENDnet TEW-821DAP NTP Timezone Configuration apply_time.cgi uci_safe_get stack-based overflow — TEW-821DAP CWE-121 10.0 Critical 2026-08-22
CVE-2026-77945 TRENDnet TEW-821DAP ssi upload.cgi command injection — TEW-821DAP CWE-77 7.4 High 2026-08-22
CVE-2026-76591 TRENDnet TEW-755AP ssi email.cgi log_email_server command injection — TEW-755AP CWE-77 7.4 High 2026-08-19
CVE-2026-76590 TRENDnet TEW-755AP ssi wan.cgi stack-based overflow — TEW-755AP CWE-121 9.9 Critical 2026-08-19
CVE-2026-76589 TRENDnet TEW-755AP mycli FUN_401000 stack-based overflow — TEW-755AP CWE-121 9.9 Critical 2026-08-19
CVE-2026-76584 TRENDnet TV-IP751WIC alphapd set_time.cgi stack-based overflow — TV-IP751WIC CWE-121 9.9 Critical 2026-08-19
CVE-2026-76583 TRENDnet TV-IP751WIC alphapd set_time.cgi command injection — TV-IP751WIC CWE-77 7.4 High 2026-08-19
CVE-2026-76582 TRENDnet TEW-821DAP ssi ping.cgi system command injection — TEW-821DAP CWE-77 7.4 High 2026-08-19
CVE-2026-75985 TRENDnet Router ping.cgi command injection — Router CWE-77 7.4 High 2026-08-19
CVE-2026-75984 TRENDnet TEW-823DRU admin.cgi command injection — TEW-823DRU CWE-77 7.4 High 2026-08-19
CVE-2026-75976 TRENDnet TEW-823DRU NVRAM wan.cgi strcpy stack-based overflow — TEW-823DRU CWE-121 9.9 Critical 2026-08-18
CVE-2026-75877 TRENDnet TV-IP751WIC alphapd FUN_0043372C stack-based overflow — TV-IP751WIC CWE-121 9.9 Critical 2026-08-18
CVE-2026-75784 TRENDnet TEW-WLC100 HTTP Header nginx FUN_0040da4c stack-based overflow — TEW-WLC100 CWE-121 10.0 Critical 2026-08-18
CVE-2026-75783 TRENDnet TEW-WLC100P DHCP blobmsg netifd stack-based overflow — TEW-WLC100P CWE-121 9.6 Critical 2026-08-18
CVE-2026-19891 TRENDnet TEW-WLC100 IKE Phase 1 Aggressive Mode racoon.conf missing encryption — TEW-WLC100 CWE-311 3.7 Low 2026-08-15
CVE-2026-19841 TRENDNET TEW-813DRU vsftpd vsftpd.conf default permission — TEW-813DRU CWE-276 3.1 Low 2026-08-14
CVE-2026-19830 TRENDnet TEW-816DRM bftpd bftpd.conf allocation of resources — TEW-816DRM CWE-770 5.3 Medium 2026-08-14
CVE-2026-15487 TRENDnet TEW-821DAP Firmware Update system_ntp sub_41FBD0 os command injection — TEW-821DAP CWE-78 6.3 Medium 2026-07-12
CVE-2026-15486 TRENDnet TEW-821DAP Firmware Update tools_ddns sub_42026C os command injection — TEW-821DAP CWE-78 6.3 Medium 2026-07-12
CVE-2026-15485 TRENDnet TEW-821DAP DNS Lookup tools_nslookup sub_43F2C4 os command injection — TEW-821DAP CWE-78 6.3 Medium 2026-07-12
CVE-2026-15484 TRENDnet TEW-821DAP ssi tools_nslookup sub_41EC14 buffer overflow — TEW-821DAP CWE-120 8.8 High 2026-07-12
CVE-2026-15483 TRENDnet TEW-821DAP ssi tools_nslookup sub_41EC14 buffer overflow — TEW-821DAP CWE-120 8.8 High 2026-07-12
CVE-2026-15481 Trendnet TEW-635BRM IPoA WAN Connection Setup rc ipoa_test command injection — TEW-635BRM CWE-77 8.8 High 2026-07-12
CVE-2026-15480 Trendnet TEW-635BRM Web Service rc start_httpd stack-based overflow — TEW-635BRM CWE-121 8.8 High 2026-07-12
CVE-2026-10183 TRENDnet TEW-432BRP formWlanSetup stack-based overflow — TEW-432BRP CWE-121 8.8 High 2026-05-31
CVE-2026-10182 TRENDnet TEW-432BRP formWlanSetup command injection — TEW-432BRP CWE-77 6.3 Medium 2026-05-31
CVE-2026-10181 TRENDnet TEW-432BRP formSysCmd stack-based overflow — TEW-432BRP CWE-121 8.8 High 2026-05-31
CVE-2026-10180 TRENDnet TEW-432BRP formSysCmd command injection — TEW-432BRP CWE-77 6.3 Medium 2026-05-31
CVE-2026-10179 TRENDnet TEW-432BRP formSetWlanEncrypt stack-based overflow — TEW-432BRP CWE-121 8.8 High 2026-05-31

This page lists every published CVE security advisory associated with TRENDnet. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.