Vulnerabilities > Trendnet > TEW 812Dru Firmware

DATE CVE VULNERABILITY TITLE RISK
2019-11-13 CVE-2013-3366 Cross-Site Request Forgery (CSRF) vulnerability in Trendnet Tew-812Dru Firmware
Undocumented TELNET service in TRENDnet TEW-812DRU when a web page named backdoor contains an HTML parameter of password and a value of j78G¬DFdg_24Mhw3.
network
trendnet CWE-352
critical
9.3
2017-03-14 CVE-2013-4659 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
Buffer overflow in Broadcom ACSD allows remote attackers to execute arbitrary code via a long string to TCP port 5916.
network
low complexity
asus trendnet CWE-119
critical
10.0
2014-02-04 CVE-2013-3098 Cross-Site Request Forgery (CSRF) vulnerability in Trendnet Tew-812Dru and Tew-812Dru Firmware
Multiple cross-site request forgery (CSRF) vulnerabilities in TRENDnet TEW-812DRU router with firmware before 1.0.9.0 allow remote attackers to hijack the authentication of administrators for requests that (1) change admin credentials in a request to setSysAdm.cgi, (2) enable remote management or (3) enable port forwarding in an Apply action to uapply.cgi, or (4) have unspecified impact via a request to setNTP.cgi.
network
trendnet CWE-352
6.8