๐Ÿ” CVE Alert

CVE-2026-7607

HIGH 8.8

TRENDnet TEW-821DAP Firmware Udpate auto_update_firmware buffer overflow

CVSS Score
8.8
EPSS Score
0.0%
EPSS Percentile
0th

A security vulnerability has been detected in TRENDnet TEW-821DAP 1.12B01. Impacted is the function auto_update_firmware of the component Firmware Udpate. The manipulation of the argument str leads to buffer overflow. The attack may be initiated remotely. The vendor explains: "That firmware version will only work on our hardware version v1.xR. We have already EOL that product 8 years ago and are no longer selling". This vulnerability only affects products that are no longer supported by the maintainer.

CWE CWE-120 CWE-119
Vendor trendnet
Product tew-821dap
Published May 2, 2026
Stay Ahead of the Next One

Get instant alerts for trendnet tew-821dap

Be the first to know when new high vulnerabilities affecting trendnet tew-821dap are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:X/RL:X/RC:R
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability

Affected Versions

TRENDnet / TEW-821DAP
1.12B01

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
vuldb.com: https://vuldb.com/vuln/360564 vuldb.com: https://vuldb.com/vuln/360564/cti vuldb.com: https://vuldb.com/submit/806214 github.com: https://github.com/IOTRes/IOT_Firmware_Update/blob/main/Trendnet/TEW-821DAP_BO.md

Credits

๐Ÿ” IOT_Res (VulDB User) VulDB CNA Team