Vulnerabilities > Trendnet > TEW 824Dru Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2024-01-26 CVE-2024-22545 Command Injection vulnerability in Trendnet Tew-824Dru Firmware 1.04B01
An issue was discovered in TRENDnet TEW-824DRU version 1.04b01, allows unauthenticated attackers to execute arbitrary code via the system.ntp.server parameter in the sub_420AE0() function.
local
low complexity
trendnet CWE-77
7.8