Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2989▼ 87 respecto a la semana anterior
Críticas / altas1458▲ 97 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
26 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.8) | 0.97% | — | Trendnet Tew-755ap Firmware | 30/12/2022 | 17/6/2026 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the setbg_num parameter in the icp_setbg_img (sub_41DD68) function. | |
| Modificada | Crítica (9.8) | 0.87% | — | Trendnet Tew-755ap Firmware | 30/12/2022 | 17/6/2026 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the wps_sta_enrollee_pin parameter in the action set_sta_enrollee_pin_24g function. | |
| Modificada | Crítica (9.8) | 0.97% | — | Trendnet Tew-755ap Firmware | 30/12/2022 | 17/6/2026 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the setlogo_num parameter in the icp_setlogo_img (sub_41DBF4) function. | |
| Modificada | Crítica (9.8) | 2.3% | — | Trendnet Tew-755ap Firmware | 30/12/2022 | 17/6/2026 | TRENDnet TEW755AP 1.13B01 was discovered to contain a command injection vulnerability via the wps_sta_enrollee_pin parameter in the action set_sta_enrollee_pin_5g function. | |
| Modificada | Crítica (9.8) | 2.3% | — | Trendnet Tew-755ap Firmware | 30/12/2022 | 17/6/2026 | TRENDnet TEW755AP 1.13B01 was discovered to contain a command injection vulnerability via the sys_service parameter in the setup_wizard_mydlink (sub_4104B8) function. | |
| Modificada | Crítica (9.8) | 0.87% | — | Trendnet Tew-755ap Firmware | 30/12/2022 | 17/6/2026 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the del_num parameter in the icp_delete_img (sub_41DEDC) function. | |
| Modificada | Crítica (9.8) | 0.87% | — | Trendnet Tew-755ap Firmware | 30/12/2022 | 17/6/2026 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the update_file_name parameter in the auto_up_fw (sub_420A04) function. | |
| Modificada | Crítica (9.8) | 0.87% | — | Trendnet Tew-755ap Firmware | 30/12/2022 | 17/6/2026 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the wps_sta_enrollee_pin parameter in the do_sta_enrollee_wifi function. | |
| Modificada | Crítica (9.8) | 0.87% | — | Trendnet Tew-755ap Firmware | 30/12/2022 | 17/6/2026 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the wps_sta_enrollee_pin parameter in the set_sta_enrollee_pin_5g function. | |
| Modificada | Crítica (9.8) | 0.87% | — | Trendnet Tew-755ap Firmware | 30/12/2022 | 17/6/2026 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the reject_url parameter in the reject (sub_41BD60) function. | |
| Modificada | Crítica (9.8) | 0.97% | — | Trendnet Tew-755ap Firmware | 30/12/2022 | 17/6/2026 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the cameo.cameo.netstat_rsname parameter in the tools_netstat (sub_41E730) function. | |
| Modificada | Crítica (9.8) | 0.97% | — | Trendnet Tew-755ap Firmware | 30/12/2022 | 17/6/2026 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the cameo.cameo.netstat_option parameter in the tools_netstat (sub_41E730) function. | |
| Modificada | Crítica (9.8) | 0.87% | — | Trendnet Tew-755ap Firmware | 30/12/2022 | 17/6/2026 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the sys_service parameter in the setup_wizard_mydlink (sub_4104B8) function. | |
| Modificada | Crítica (9.8) | 0.97% | — | Trendnet Tew-755ap Firmware | 30/12/2022 | 17/6/2026 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the qcawifi.wifi%d_vap%d.maclist parameter in the kick_ban_wifi_mac_allow (sub_415B00) function. | |
| Modificada | Crítica (9.8) | 0.87% | — | Trendnet Tew-755ap Firmware | 30/12/2022 | 17/6/2026 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the REMOTE_USER parameter in the get_access (sub_45AC2C) function. | |
| Modificada | Crítica (9.8) | 0.97% | — | Trendnet Tew-755ap Firmware | 30/12/2022 | 17/6/2026 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the qcawifi.wifi%d_vap%d.maclist parameter in the kick_ban_wifi_mac_deny (sub_415D7C) function. | |
| Modificada | Crítica (9.8) | 0.87% | — | Trendnet Tew-755ap Firmware | 30/12/2022 | 17/6/2026 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the reboot_type parameter in the wizard_ipv6 (sub_41C380) function. | |
| Modificada | Crítica (9.8) | 0.87% | — | Trendnet Tew-755ap Firmware | 30/12/2022 | 17/6/2026 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the login_name parameter in the do_graph_auth (sub_4061E0) function. | |
| Modificada | Crítica (9.8) | 0.87% | — | Trendnet Tew-755ap Firmware | 30/12/2022 | 17/6/2026 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the cameo.cameo.nslookup_target parameter in the tools_nslookup function. | |
| Modificada | Crítica (9.8) | 0.87% | — | Trendnet Tew-755ap Firmware | 30/12/2022 | 17/6/2026 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the user_edit_page parameter in the wifi_captive_portal function. | |
| Modificada | Media (6.5) | 0.81% | — | Trendnet Tew-755ap FirmwareTrendnet Tew-755ap2kac FirmwareTrendnet Tew-821dap2kac FirmwareTrendnet Tew-825dap Firmware | 10/8/2021 | 17/6/2026 | A Format String vulnerablity exists in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03, and TEW-825DAP 1.11B03, which could let a remote malicious user cause a denial of service due to a logic bug at address 0x40dcd0 when calling fprintf with "%s: key len = %d, too long\n" format. The two… | |
| Modificada | Alta (7.5) | 0.96% | — | Trendnet Tew-755ap FirmwareTrendnet Tew-755ap2kac FirmwareTrendnet Tew-821dap2kac FirmwareTrendnet Tew-825dap Firmware | 10/8/2021 | 17/6/2026 | Null Pointer Dereference vulnerability exists in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03, and TEW-825DAP 1.11B03, which could let a remote malicious user cause a denial of service by sending the POST request to apply_cgi via the lang action without a language key. | |
| Modificada | Alta (7.5) | 0.96% | — | Trendnet Tew-755ap FirmwareTrendnet Tew-755ap2kac FirmwareTrendnet Tew-821dap2kac FirmwareTrendnet Tew-825dap Firmware | 10/8/2021 | 17/6/2026 | Null Pointer Dereference vulnerability exists in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03, and TEW-825DAP 1.11B03 by sending the POST request to apply_cgi via a do_graph_auth action without a session_id key. | |
| Modificada | Alta (7.5) | 0.96% | — | Trendnet Tew-755ap FirmwareTrendnet Tew-755ap2kac FirmwareTrendnet Tew-821dap2kac FirmwareTrendnet Tew-825dap Firmware | 10/8/2021 | 17/6/2026 | Null Pointer Dereference vulnerability exists in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03, and TEW-825DAP 1.11B03 by sending the POST request to apply_cgi with an unknown action name. | |
| Modificada | Alta (7.5) | 0.96% | — | Trendnet Tew-755ap FirmwareTrendnet Tew-755ap2kac FirmwareTrendnet Tew-821dap2kac FirmwareTrendnet Tew-825dap Firmware | 10/8/2021 | 17/6/2026 | Null Pointer Deference vulnerability exists in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03, and TEW-825DAP 1.11B03, which could let a remote malicious user cause a denial os service by sending the POST request to apply_cgi via action do_graph_auth without login_name key. |