CVE-2026-76582

HIGH
7.4CVSS v3
6.5CVSS v2
1.28% EPSS (exploit probability)
CWE-74CWE

Description

A vulnerability was determined in TRENDnet TEW-821DAP 2.2.01b05. Affected is the function popen/system of the file /cgi-bin/ping.cgi of the component ssi. Executing a manipulation of the argument ipaddr can lead to command injection. It is possible to launch the attack remotely. The exploit has been publicly disclosed and may be utilized.

CVSS v3 vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L

Affected routers (1)

VendorModelMatched viaAffected versionsFixed inPatch Status
TRENDnet TRENDnet TEW-821DAP Unpatched

External references