An issue was discovered on TRENDnet TV-IP1314PI 5.5.3 200714 devices. Command injection can occur because the system function is used by davinci to unpack language packs without strict filtering of URL strings.
2024-01-09T09:15:42.350
2025-06-20T16:15:25.543
Modified
CVSSv3.1: 9.8 (CRITICAL)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | trendnet | tv-ip1314pi_firmware | 5.5.3 | Yes |
Hardware | trendnet | tv-ip1314pi | - | No |