Vulnerability Description
An issue was found on TRENDnet TEW-831DR 1.0 601.130.1.1356 devices. An OS injection vulnerability exists within the web interface, allowing an attacker with valid credentials to execute arbitrary shell commands.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Trendnet | Tew-831Dr Firmware | 1.0_601.130.1.1356 |
| Trendnet | Tew-831Dr | - |
Related Weaknesses (CWE)
References
- https://research.nccgroup.com/2022/06/10/technical-advisory-multiple-vulnerabiliThird Party Advisory
- https://research.nccgroup.com/?research=Technical+advisoriesThird Party Advisory
- https://research.nccgroup.com/2022/06/10/technical-advisory-multiple-vulnerabiliThird Party Advisory
- https://research.nccgroup.com/?research=Technical+advisoriesThird Party Advisory
FAQ
What is CVE-2022-30329?
CVE-2022-30329 is a vulnerability with a CVSS score of 9.8 (CRITICAL). An issue was found on TRENDnet TEW-831DR 1.0 601.130.1.1356 devices. An OS injection vulnerability exists within the web interface, allowing an attacker with valid credentials to execute arbitrary she...
How severe is CVE-2022-30329?
CVE-2022-30329 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2022-30329?
Check the references section above for vendor advisories and patch information. Affected products include: Trendnet Tew-831Dr Firmware, Trendnet Tew-831Dr.