PT-2022-27927 · Trendnet · Trendnet Tew755Ap

Published

2022-12-30

·

Updated

2023-01-05

·

CVE-2022-46600

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions TRENDnet TEW755AP version 1.13B01
Description A stack overflow issue was discovered via the wps sta enrollee pin parameter in the set sta enrollee pin 24g function. This issue can be exploited, potentially allowing unauthorized access or control.
Recommendations For TRENDnet TEW755AP version 1.13B01, consider disabling the set sta enrollee pin 24g function or restricting access to the wps sta enrollee pin parameter until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2022-46600

Affected Products

Trendnet Tew755Ap