PT-2024-13704 · Trendnet · Trendnet Tv-Ip1314Pi

Published

2024-01-09

·

Updated

2025-06-20

·

CVE-2023-49235

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions TRENDnet TV-IP1314PI version 5.5.3 200714
Description An issue was discovered in libremote dbg.so where filtering of debug information is mishandled during use of popen. Consequently, an attacker can bypass validation and execute a shell command.
Recommendations For TRENDnet TV-IP1314PI version 5.5.3 200714, consider disabling the use of popen in libremote dbg.so until a patch is available. Restrict access to debug information to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

OS Command Injection

Weakness Enumeration

Related Identifiers

CVE-2023-49235

Affected Products

Trendnet Tv-Ip1314Pi