Trendnet
Trendnet Tew-755ap Firmware: vulnerabilidades y CVE
Trendnet Tew-755ap Firmware tiene 26 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 20 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE26
Últimos 12 meses0
Críticas20
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2022-46601 | Crítica (9.8) | 0.97% | — | 30 dic 2022 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the setbg_num parameter in the icp_setbg_img (sub_41DD68) function. |
| CVE-2022-46600 | Crítica (9.8) | 0.87% | — | 30 dic 2022 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the wps_sta_enrollee_pin parameter in the action set_sta_enrollee_pin_24g function. |
| CVE-2022-46599 | Crítica (9.8) | 0.97% | — | 30 dic 2022 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the setlogo_num parameter in the icp_setlogo_img (sub_41DBF4) function. |
| CVE-2022-46598 | Crítica (9.8) | 2.3% | — | 30 dic 2022 | TRENDnet TEW755AP 1.13B01 was discovered to contain a command injection vulnerability via the wps_sta_enrollee_pin parameter in the action set_sta_enrollee_pin_5g function. |
| CVE-2022-46597 | Crítica (9.8) | 2.3% | — | 30 dic 2022 | TRENDnet TEW755AP 1.13B01 was discovered to contain a command injection vulnerability via the sys_service parameter in the setup_wizard_mydlink (sub_4104B8) function. |
| CVE-2022-46596 | Crítica (9.8) | 0.87% | — | 30 dic 2022 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the del_num parameter in the icp_delete_img (sub_41DEDC) function. |
| CVE-2022-46594 | Crítica (9.8) | 0.87% | — | 30 dic 2022 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the update_file_name parameter in the auto_up_fw (sub_420A04) function. |
| CVE-2022-46593 | Crítica (9.8) | 0.87% | — | 30 dic 2022 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the wps_sta_enrollee_pin parameter in the do_sta_enrollee_wifi function. |
| CVE-2022-46592 | Crítica (9.8) | 0.87% | — | 30 dic 2022 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the wps_sta_enrollee_pin parameter in the set_sta_enrollee_pin_5g function. |
| CVE-2022-46591 | Crítica (9.8) | 0.87% | — | 30 dic 2022 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the reject_url parameter in the reject (sub_41BD60) function. |
| CVE-2022-46590 | Crítica (9.8) | 0.97% | — | 30 dic 2022 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the cameo.cameo.netstat_rsname parameter in the tools_netstat (sub_41E730) function. |
| CVE-2022-46589 | Crítica (9.8) | 0.97% | — | 30 dic 2022 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the cameo.cameo.netstat_option parameter in the tools_netstat (sub_41E730) function. |
| CVE-2022-46588 | Crítica (9.8) | 0.87% | — | 30 dic 2022 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the sys_service parameter in the setup_wizard_mydlink (sub_4104B8) function. |
| CVE-2022-46586 | Crítica (9.8) | 0.97% | — | 30 dic 2022 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the qcawifi.wifi%d_vap%d.maclist parameter in the kick_ban_wifi_mac_allow (sub_415B00) function. |
| CVE-2022-46585 | Crítica (9.8) | 0.87% | — | 30 dic 2022 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the REMOTE_USER parameter in the get_access (sub_45AC2C) function. |
| CVE-2022-46584 | Crítica (9.8) | 0.97% | — | 30 dic 2022 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the qcawifi.wifi%d_vap%d.maclist parameter in the kick_ban_wifi_mac_deny (sub_415D7C) function. |
| CVE-2022-46583 | Crítica (9.8) | 0.87% | — | 30 dic 2022 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the reboot_type parameter in the wizard_ipv6 (sub_41C380) function. |
| CVE-2022-46582 | Crítica (9.8) | 0.87% | — | 30 dic 2022 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the login_name parameter in the do_graph_auth (sub_4061E0) function. |
| CVE-2022-46581 | Crítica (9.8) | 0.87% | — | 30 dic 2022 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the cameo.cameo.nslookup_target parameter in the tools_nslookup function. |
| CVE-2022-46580 | Crítica (9.8) | 0.87% | — | 30 dic 2022 | TRENDnet TEW755AP 1.13B01 was discovered to contain a stack overflow via the user_edit_page parameter in the wifi_captive_portal function. |
| CVE-2021-28846 | Media (6.5) | 0.81% | — | 10 ago 2021 | A Format String vulnerablity exists in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03, and TEW-825DAP 1.11B03, which could let a remote malicious user cause a denial of service due to a logic… |
| CVE-2021-28845 | Alta (7.5) | 0.96% | — | 10 ago 2021 | Null Pointer Dereference vulnerability exists in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03, and TEW-825DAP 1.11B03, which could let a remote malicious user cause a denial of service by… |
| CVE-2021-28844 | Alta (7.5) | 0.96% | — | 10 ago 2021 | Null Pointer Dereference vulnerability exists in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03, and TEW-825DAP 1.11B03 by sending the POST request to apply_cgi via a do_graph_auth action… |
| CVE-2021-28843 | Alta (7.5) | 0.96% | — | 10 ago 2021 | Null Pointer Dereference vulnerability exists in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03, and TEW-825DAP 1.11B03 by sending the POST request to apply_cgi with an unknown action name. |
| CVE-2021-28842 | Alta (7.5) | 0.96% | — | 10 ago 2021 | Null Pointer Deference vulnerability exists in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03, and TEW-825DAP 1.11B03, which could let a remote malicious user cause a denial os service by… |
| CVE-2021-28841 | Alta (7.5) | 0.96% | — | 10 ago 2021 | Null Pointer Dereference vulnerability in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03, and TEW-825DAP 1.11B03, which could let a remote malicious user cause a denial of service by sending a… |