CVEs Blog | G5 Cyber Security

CVE-2020-14079 – TRENDnet TEW-827DRU devices through 2.06B04 contain a stack-based buffer

TRENDnet TEW-827DRU devices through 2.06B04 contain a stack-based buffer overflow in the ssi binary. The overflow allows an authenticated user to execute arbitrary code by POSTing to apply.cgi via the action auto_up_fw (or auto_up_lp) with a sufficiently long update_file_name key.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-14079

Reference (s):

Exit mobile version