An issue was discovered in TRENDnet TEW-824DRU version 1.04b01, allows unauthenticated attackers to execute arbitrary code via the system.ntp.server parameter in the sub_420AE0() function. The attack can be launched remotely.
2024-01-26T08:15:42.480
2025-05-29T16:15:34.440
Modified
CVSSv3.1: 7.8 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | trendnet | tew-824dru_firmware | 1.04b01 | Yes |
Hardware | trendnet | tew-824dru | - | No |