PT-2019-12285 · Trendnet · Trendnet Tew-652Brp+1

Published

2019-12-18

·

Updated

2019-12-23

·

CVE-2019-11400

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions TRENDnet TEW-651BR version 2.04B1 TRENDnet TEW-652BRP version 3.04b01 TRENDnet TEW-652BRU version 1.00b12
Description A buffer overflow issue was discovered. The issue occurs through the ccp act parameter in the get set.ccp endpoint.
Recommendations For TRENDnet TEW-651BR version 2.04B1, avoid using the ccp act parameter in the get set.ccp endpoint until the issue is resolved. For TRENDnet TEW-652BRP version 3.04b01, avoid using the ccp act parameter in the get set.ccp endpoint until the issue is resolved. For TRENDnet TEW-652BRU version 1.00b12, avoid using the ccp act parameter in the get set.ccp endpoint until the issue is resolved.

Exploit

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-11400

Affected Products

Trendnet Tew-651Br
Trendnet Tew-652Brp