Show filters
130 Total Results
Displaying 91-100 of 130
Sort by:
Attacker Value
Unknown
CVE-2020-14075
Disclosure Date: June 15, 2020 (last updated February 21, 2025)
TRENDnet TEW-827DRU devices through 2.06B04 contain multiple command injections in apply.cgi via the action pppoe_connect, ru_pppoe_connect, or dhcp_connect with the key wan_ifname (or wan0_dns), allowing an authenticated user to run arbitrary commands on the device.
0
Attacker Value
Unknown
CVE-2020-14080
Disclosure Date: June 15, 2020 (last updated February 21, 2025)
TRENDnet TEW-827DRU devices through 2.06B04 contain a stack-based buffer overflow in the ssi binary. The overflow allows an unauthenticated user to execute arbitrary code by POSTing to apply_sec.cgi via the action ping_test with a sufficiently long ping_ipaddr key.
0
Attacker Value
Unknown
CVE-2020-14081
Disclosure Date: June 15, 2020 (last updated February 21, 2025)
TRENDnet TEW-827DRU devices through 2.06B04 contain multiple command injections in apply.cgi via the action send_log_email with the key auth_acname (or auth_passwd), allowing an authenticated user to run arbitrary commands on the device.
0
Attacker Value
Unknown
CVE-2020-12763
Disclosure Date: May 13, 2020 (last updated February 21, 2025)
TRENDnet ProView Wireless camera TV-IP512WN 1.0R 1.0.4 is vulnerable to an unauthenticated stack-based buffer overflow in handling RTSP packets. This may result in remote code execution or denial of service. The issue is in the binary rtspd (in /sbin) when parsing a long "Authorization: Basic" RTSP header.
0
Attacker Value
Unknown
CVE-2020-10213
Disclosure Date: March 07, 2020 (last updated February 21, 2025)
An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. They allow remote attackers to execute arbitrary commands via the wps_sta_enrollee_pin parameter in a set_sta_enrollee_pin.cgi POST request. TRENDnet TEW-632BRP 1.010B32 is also affected.
0
Attacker Value
Unknown
CVE-2020-10216
Disclosure Date: March 07, 2020 (last updated February 21, 2025)
An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. They allow remote attackers to execute arbitrary commands via the date parameter in a system_time.cgi POST request. TRENDnet TEW-632BRP 1.010B32 is also affected.
0
Attacker Value
Unknown
CVE-2020-10215
Disclosure Date: March 07, 2020 (last updated February 21, 2025)
An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. They allow remote attackers to execute arbitrary commands via the dns_query_name parameter in a dns_query.cgi POST request. TRENDnet TEW-632BRP 1.010B32 is also affected.
0
Attacker Value
Unknown
CVE-2013-6360
Disclosure Date: February 13, 2020 (last updated February 21, 2025)
TRENDnet TS-S402 has a backdoor to enable TELNET.
0
Attacker Value
Unknown
CVE-2013-3366
Disclosure Date: November 13, 2019 (last updated November 27, 2024)
Undocumented TELNET service in TRENDnet TEW-812DRU when a web page named backdoor contains an HTML parameter of password and a value of j78G¬DFdg_24Mhw3.
0
Attacker Value
Unknown
CVE-2013-3367
Disclosure Date: November 13, 2019 (last updated November 27, 2024)
Undocumented TELNET service in TRENDnet TEW-691GR and TEW-692GR when a web page named backdoor contains an HTML parameter of password and a value of j78G¬DFdg_24Mhw3.
0