A command injection issue in TRENDnet TEW-411BRPplus v.2.07_eu that allows a local attacker to execute arbitrary code via the data1 parameter in the debug.cgi page.
2024-01-25T22:15:07.737
2025-05-29T16:15:30.437
Modified
CVSSv3.1: 8.1 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | trendnet | tew-411brpplus_firmware | 2.07_eu | Yes |
Hardware | trendnet | tew-411brpplus | - | No |