Stack-Based Buffer Overflow in TRENDnet TEW-827DRU Firmware
CVE-2019-13280
8.8HIGH
What is CVE-2019-13280?
The TRENDnet TEW-827DRU router, when running firmware versions up to and including 2.04B03, is susceptible to a stack-based buffer overflow vulnerability. This vulnerability arises during the process of handling error messages for failed hostname resolutions during ping or traceroute commands. An authenticated user can exploit this flaw to execute arbitrary code, leveraging either local intranet access or remote administration capabilities if enabled. Sensitive systems utilizing affected firmware may therefore be at risk, necessitating timely updates and patches.