Insufficient Data Authenticity in TRENDnet Product Firmware Update Handler
CVE-2026-7606
6.3MEDIUM
What is CVE-2026-7606?
A vulnerability has been discovered in the TRENDnet TEW-821DAP firmware update process, specifically within the find_hwid/new_gui_update_firmware function. This issue stems from inadequate verification of data authenticity during firmware updates, which can be exploited remotely. Although the exploitation is complex and challenging, it poses a risk to products no longer supported by the vendor, such as those impacted by this firmware version from 8 years ago.
Affected Version(s)
TEW-821DAP 1.12B01
