TRENDnet TEW-815DAP 1.0.2.0 is vulnerable to Command Injection via the do_setNTP function. An authenticated attacker with administrator privileges can leverage this vulnerability over the network via a malicious POST request.
2024-04-30T19:15:23.147
2025-04-01T15:11:17.547
Analyzed
CVSSv3.1: 6.4 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | trendnet | tew-815dap_firmware | 1.0.2.0 | Yes |
Hardware | trendnet | tew-815dap | - | No |