PT-2022-27911 · Trendnet · Trendnet Tew755Ap

Published

2022-12-30

·

Updated

2023-01-05

·

CVE-2022-46583

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions TRENDnet TEW755AP version 1.13B01
Description A stack overflow issue was discovered via the reboot type parameter in the wizard ipv6 function, specifically in the sub 41C380 function.
Recommendations For TRENDnet TEW755AP version 1.13B01, consider restricting access to the wizard ipv6 function to minimize the risk of exploitation until a patch is available. Avoid using the reboot type parameter in the affected function until the issue is resolved.

Exploit

Fix

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2022-46583

Affected Products

Trendnet Tew755Ap