Search Results (Refine Search)
- CPE Product Version: cpe:/h:trendnet:tew-812dru:-
Vuln ID | Summary | CVSS Severity |
---|---|---|
CVE-2013-3366 |
Undocumented TELNET service in TRENDnet TEW-812DRU when a web page named backdoor contains an HTML parameter of password and a value of j78G¬DFdg_24Mhw3. Published: November 13, 2019; 5:15:11 PM -0500 |
V3.1: 8.8 HIGH V2.0: 9.3 HIGH |
CVE-2013-4659 |
Buffer overflow in Broadcom ACSD allows remote attackers to execute arbitrary code via a long string to TCP port 5916. This component is used on routers of multiple vendors including ASUS RT-AC66U and TRENDnet TEW-812DRU. Published: March 14, 2017; 5:59:00 AM -0400 |
V3.0: 9.8 CRITICAL V2.0: 10.0 HIGH |
CVE-2013-3365 |
TRENDnet TEW-812DRU router allows remote authenticated users to execute arbitrary commands via shell metacharacters in the (1) wan network prefix to internet/ipv6.asp; (2) remote port to adm/management.asp; (3) pptp username, (4) pptp password, (5) ip, (6) gateway, (7) l2tp username, or (8) l2tp password to internet/wan.asp; (9) NtpDstStart, (10) NtpDstEnd, or (11) NtpDstOffset to adm/time.asp; or (12) device url to adm/management.asp. NOTE: vectors 9, 10, and 11 can be exploited by unauthenticated remote attackers by leveraging CVE-2013-3098. Published: February 04, 2014; 4:55:05 PM -0500 |
V3.x:(not available) V2.0: 8.5 HIGH |
CVE-2013-3098 |
Multiple cross-site request forgery (CSRF) vulnerabilities in TRENDnet TEW-812DRU router with firmware before 1.0.9.0 allow remote attackers to hijack the authentication of administrators for requests that (1) change admin credentials in a request to setSysAdm.cgi, (2) enable remote management or (3) enable port forwarding in an Apply action to uapply.cgi, or (4) have unspecified impact via a request to setNTP.cgi. NOTE: some of these details are obtained from third party information. Published: February 04, 2014; 4:55:05 PM -0500 |
V3.x:(not available) V2.0: 6.8 MEDIUM |