CVE-2026-5355
- EPSS 0.38%
- Veröffentlicht 02.04.2026 16:45:17
- Zuletzt bearbeitet 29.04.2026 01:00:01
A vulnerability has been found in Trendnet TEW-657BRM 1.00.1. Affected by this issue is the function vpn_drop of the file /setup.cgi. The manipulation of the argument policy_name leads to os command injection. The attack is possible to be carried out...
CVE-2026-5354
- EPSS 0.38%
- Veröffentlicht 02.04.2026 16:30:13
- Zuletzt bearbeitet 29.04.2026 01:00:01
A flaw has been found in Trendnet TEW-657BRM 1.00.1. Affected by this vulnerability is the function vpn_connect of the file /setup.cgi. Executing a manipulation of the argument policy_name can lead to os command injection. The attack can be executed ...
CVE-2026-5353
- EPSS 0.38%
- Veröffentlicht 02.04.2026 16:15:15
- Zuletzt bearbeitet 29.04.2026 01:00:01
A vulnerability was detected in Trendnet TEW-657BRM 1.00.1. Affected is the function ping_test of the file /setup.cgi. Performing a manipulation of the argument c4_IPAddr results in os command injection. Remote exploitation of the attack is possible....
CVE-2026-5352
- EPSS 0.38%
- Veröffentlicht 02.04.2026 16:00:13
- Zuletzt bearbeitet 29.04.2026 01:00:01
A security vulnerability has been detected in Trendnet TEW-657BRM 1.00.1. This impacts the function Edit of the file /setup.cgi. Such manipulation of the argument pcdb_list leads to os command injection. The attack may be launched remotely. The explo...
CVE-2026-5351
- EPSS 0.08%
- Veröffentlicht 02.04.2026 15:45:12
- Zuletzt bearbeitet 29.04.2026 01:00:01
A weakness has been identified in Trendnet TEW-657BRM 1.00.1. This affects the function add_wps_client of the file /setup.cgi. This manipulation of the argument wl_enrolee_pin causes os command injection. The attack may be initiated remotely. The exp...
CVE-2026-5350
- EPSS 0.11%
- Veröffentlicht 02.04.2026 15:30:13
- Zuletzt bearbeitet 07.04.2026 16:38:30
A security flaw has been discovered in Trendnet TEW-657BRM 1.00.1. The impacted element is the function update_pcdb of the file /setup.cgi. The manipulation of the argument mac_pc_dba results in stack-based buffer overflow. The attack can be launched...
CVE-2026-5349
- EPSS 0.11%
- Veröffentlicht 02.04.2026 15:15:12
- Zuletzt bearbeitet 07.04.2026 14:15:16
A vulnerability was identified in Trendnet TEW-657BRM 1.00.1. The affected element is the function add_apcdb of the file /setup.cgi. The manipulation of the argument mac_pc_dba leads to stack-based buffer overflow. The attack can be initiated remotel...
- EPSS 0.38%
- Veröffentlicht 26.11.2025 00:00:00
- Zuletzt bearbeitet 05.12.2025 13:34:32
TRENDnet TEW-657BRM 1.00.1 has an authenticated remote OS command injection vulnerability in the setup.cgi binary, exploitable via the HTTP parameters "command", "todo", and "next_file," which allows an attacker to execute arbitrary commands with roo...