A security flaw has been discovered in TRENDnet TEW-432BRP 3.10B20. This affects the function formSetPortTr of the file /goform/formSetPortTr. Performing a manipulation of the argument special_name r…
Medium CVSS 6.3
Summary
A security flaw has been discovered in TRENDnet TEW-432BRP 3.10B20. This affects the function formSetPortTr of the file /goform/formSetPortTr. Performing a manipulation of the argument special_name results in stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been released to the public and may be used for attacks. The vendor explains: "This product has been EOL for 15 years (since 2009). As the item has been EOL for such a long time, we are not able to…
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- https://github.com/wudipjq/my_vuln/blob/main/TRENDnet/vuln_5/5.md Exploit
- https://vuldb.com/submit/814760 Third Party Advisory
- https://vuldb.com/vuln/367150 Third Party Advisory
- https://vuldb.com/vuln/367150/cti Permissions Required
Timeline
- nvd_ingest NVD