Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-22546


TRENDnet TEW-815DAP 1.0.2.0 is vulnerable to Command Injection via the do_setNTP function. An authenticated attacker with administrator privileges can leverage this vulnerability over the network via a malicious POST request.


Published

2024-04-30T19:15:23.147

Last Modified

2025-04-01T15:11:17.547

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 6.4 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-77

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System trendnet tew-815dap_firmware 1.0.2.0 Yes
Hardware trendnet tew-815dap - No

References