CVE-2026-7608

MEDIUM
5.5CVSS v3
5.2CVSS v2
1.57% EPSS (exploit probability)
CWE-77CWE

Description

A vulnerability was detected in TRENDnet TEW-821DAP up to 1.12B01. The affected element is the function tools_diagnostic. The manipulation results in os command injection. The exploit is now public and may be used. The vendor explains: "That firmware version will only work on our hardware version v1.xR. We have already EOL that product 8 years ago and are no longer selling". This vulnerability only affects products that are no longer supported by the maintainer.

CVSS v3 vector: CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

Affected routers (1)

VendorModelMatched viaAffected versionsFixed inPatch Status
TRENDnet TRENDnet TEW-821DAP Unpatched

External references