CVE-2024-42813

CRITICAL

TRENDnet TEW-752DRU FW1.03B01 - Buffer Overflow

Title source: llm
STIX 2.1

Description

In TRENDnet TEW-752DRU FW1.03B01, there is a buffer overflow vulnerability due to the lack of length verification for the service field in gena.cgi. Attackers who successfully exploit this vulnerability can cause the remote target device to crash or execute arbitrary commands.

References (1)

Core 1
Core References

Scores

CVSS v3 9.8
EPSS 0.0029
EPSS Percentile 52.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact total

Details

CWE
CWE-120
Status published
Products (1)
trendnet/tew-752dru_firmware 1.03b01
Published Aug 19, 2024
Tracked Since Feb 18, 2026