Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-22545


An issue was discovered in TRENDnet TEW-824DRU version 1.04b01, allows unauthenticated attackers to execute arbitrary code via the system.ntp.server parameter in the sub_420AE0() function. The attack can be launched remotely.


Published

2024-01-26T08:15:42.480

Last Modified

2025-05-29T16:15:34.440

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.8 (HIGH)

Weaknesses
  • Type: Primary
    CWE-77
  • Type: Secondary
    CWE-77

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System trendnet tew-824dru_firmware 1.04b01 Yes
Hardware trendnet tew-824dru - No

References