Buffer overflow in video.cgi on TRENDnet TV-IP110WN V1.2.2 build 68, V1.2.2.65, and V1.2.2 build 64 and TV-IP121WN V1.2.2 build 28 devices allows attackers to hijack the control flow to any attacker-specified location by crafting a POST request payload (without authentication).
2018-12-20T23:29:01.190
2024-11-21T03:57:37.843
Modified
CVSSv3.0: 7.5 (HIGH)
AV:N/AC:L/Au:N/C:N/I:P/A:N
10.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | trendnet | tv-ip110wn_firmware | 1.2.2.64 | Yes |
Operating System | trendnet | tv-ip110wn_firmware | 1.2.2.65 | Yes |
Operating System | trendnet | tv-ip110wn_firmware | 1.2.2.68 | Yes |
Hardware | trendnet | tv-ip110wn | - | No |
Operating System | trendnet | tv-ip121wn_firmware | 1.2.2.28 | Yes |
Hardware | trendnet | tv-ip121wn | - | No |