trendnet

194 tracked vulnerabilities.

CVE-2021-20163 MEDIUM
Trendnet TEW-827DRU 2.08B01 - Insufficiently Protected Credentials via FTP Web Page
Dec 30, 2021
CVSS 4.9
EPSS 0.00
CVE-2021-20162 MEDIUM
Trendnet TEW-827DRU Firmware 2.08B01 - Cleartext Storage of Sensitive Information in Config Files
Dec 30, 2021
CVSS 4.9
EPSS 0.00
CVE-2021-20161 MEDIUM
Trendnet TEW-827DRU Firmware 2.08B01 - Unauthenticated Root Shell Access via UART
Dec 30, 2021
CVSS 6.8
EPSS 0.00
CVE-2021-20160 HIGH
Trendnet TEW-827DRU 2.08B01 - OS Command Injection via SMB Username Parameter
Dec 30, 2021
CVSS 8.8
EPSS 0.08
CVE-2021-20159 HIGH
Trendnet TEW-827DRU 2.08B01 - OS Command Injection via System Log Parameter
Dec 30, 2021
CVSS 8.8
EPSS 0.08
CVE-2021-20158 CRITICAL NUCLEI
Trendnet TEW-827DRU Firmware 2.08B01 - Unauthenticated Admin Password Change via Hidden Command
Dec 30, 2021
CVSS 9.8
EPSS 0.86
CVE-2021-20157 HIGH
Trendnet TEW-827DRU - Denial of Service via Hidden Command
Dec 30, 2021
CVSS 7.5
EPSS 0.01
CVE-2021-20156 MEDIUM
Trendnet TEW-827DRU 2.08B01 - Improper Firmware Signature Verification
Dec 30, 2021
CVSS 6.5
EPSS 0.00
CVE-2021-20155 CRITICAL
Trendnet TEW-827DRU 2.08B01 - Use of Hard-coded Credentials
Dec 30, 2021
CVSS 9.8
EPSS 0.01
CVE-2021-20154 HIGH
Trendnet TEW-827DRU Firmware 2.08B01 - Cleartext Transmission of Sensitive Information
Dec 30, 2021
CVSS 7.5
EPSS 0.00
CVE-2021-20153 MEDIUM
Trendnet AC2600 TEW-827DRU 2.08B01 - Remote Code Execution via BitTorrent Symlink Attack
Dec 30, 2021
CVSS 6.8
EPSS 0.00
CVE-2021-20152 MEDIUM
Trendnet TEW-827DRU Firmware 2.08B01 - Unauthenticated Access to BitTorrent Web Client
Dec 30, 2021
CVSS 6.5
EPSS 0.00
CVE-2021-20151 CRITICAL
Trendnet AC2600 TEW-827DRU <2.08B01 - Session Hijacking
Dec 30, 2021
CVSS 10.0
EPSS 0.01
CVE-2021-20150 MEDIUM NUCLEI
Trendnet TEW-827DRU Firmware 2.08B01 - Unauthenticated Information Disclosure via Setup Wizard Redirection
Dec 30, 2021
CVSS 5.3
EPSS 0.57
CVE-2021-20149 CRITICAL
Trendnet TEW-827DRU 2.08B01 - Unauthenticated WAN Access via IPv6
Dec 30, 2021
CVSS 9.8
EPSS 0.01
CVE-2021-28846 MEDIUM
TRENDnet TEW-755AP/755AP2KAC/821DAP2KAC/825DAP 1.11B03 - Denial of Service via Format String in apply_cgi
Aug 10, 2021
CVSS 6.5
EPSS 0.00
CVE-2021-28845 HIGH
TRENDnet TEW-755AP, TEW-755AP2KAC, TEW-821DAP2KAC, TEW-825DAP 1.11B03 - DoS via Lang Action Null Pointer Dereference
Aug 10, 2021
CVSS 7.5
EPSS 0.00
CVE-2021-28844 HIGH
TRENDnet TEW-755AP, TEW-755AP2KAC, TEW-821DAP2KAC, TEW-825DAP 1.11B03 - Unauthenticated Null Pointer Dereference
Aug 10, 2021
CVSS 7.5
EPSS 0.00
CVE-2021-28843 HIGH
Trendnet Tew-755ap Firmware - NULL Pointer Dereference
Aug 10, 2021
CVSS 7.5
EPSS 0.00
CVE-2021-28842 HIGH
TRENDnet TEW-755AP, TEW-755AP2KAC, TEW-821DAP2KAC, TEW-825DAP 1.11B03 - DoS via apply_cgi POST Request
Aug 10, 2021
CVSS 7.5
EPSS 0.00
CVE-2021-28841 HIGH
TRENDnet TEW-755AP, TEW-755AP2KAC, TEW-821DAP2KAC, TEW-825DAP 1.11B03 - Denial of Service via POST Request to apply_cgi
Aug 10, 2021
CVSS 7.5
EPSS 0.00
CVE-2021-31655 MEDIUM
TRENDnet TV-IP110WN V1.2.2.64 V1.2.2.65 V1.2.2.68 - Cross-Site Scripting via Profile Parameter
Aug 10, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-32426 MEDIUM
TrendNet TW100-S4W1CA 2.3.32 - Stored Cross-Site Scripting via Echo Command
Jun 17, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-32424 HIGH
TrendNet TW100-S4W1CA 2.3.32 - Cross-Site Request Forgery
Jun 17, 2021
CVSS 8.8
EPSS 0.00
CVE-2020-14076 HIGH
TRENDnet TEW-827DRU < 2.06b04 - Authenticated Stack-Based Buffer Overflow via wan_type Parameter
Jun 15, 2020
CVSS 8.8
EPSS 0.06