TRENDnet TEW-827DRU with firmware up to and including 2.04B03 contains multiple command injections when processing user input for the setup wizard, allowing an unauthenticated user to run arbitrary commands on the device. The vulnerability can be exercised on the local intranet or remotely if remote administration is enabled.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2019-07-10T16:23:37
Updated: 2024-08-04T23:49:24.681Z
Reserved: 2019-07-04T00:00:00
Link: CVE-2019-13278
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-07-10T17:15:12.413
Modified: 2024-11-21T04:24:36.663
Link: CVE-2019-13278
Redhat
No data.