Buffer Overflow Vulnerability in TRENDnet TEW-821DAP Firmware Update
CVE-2026-7607

8.7HIGH

Key Information:

Vendor

Trendnet

Vendor
CVE Published:
2 May 2026

What is CVE-2026-7607?

A security flaw has been identified in the TRENDnet TEW-821DAP related to the firmware update functionality. Specifically, the auto_update_firmware method is vulnerable to a buffer overflow due to improper handling of the input argument. Attackers can exploit this vulnerability remotely, impacting devices that utilize firmware version v1.12B01. Notably, the affected product has not been supported for over eight years, leaving existing users at risk without available patches or updates from the vendor.

Affected Version(s)

TEW-821DAP 1.12B01

References

CVSS V4

Score:
8.7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

IOT_Res (VulDB User)
VulDB CNA Team
.