PoC Index

CVE-2024-42813

CRITICAL 9.8EPSS 0.7%

In TRENDnet TEW-752DRU FW1.03B01, there is a buffer overflow vulnerability due to the lack of length verification for the service field in gena.cgi. Attackers who successfully exploit this vulnerability can cause the remote target device to crash or execute arbitrary commands.

CVSS v3.1
9.8 CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS
0.69% chance of exploitation in the next 30 days, 50th percentile
Published
2024-08-19

Proof-of-concept exploits (1)

References

Related