Cleartext Transmission Vulnerability in TRENDnet TEW-821DAP Firmware Update
CVE-2026-7610

6.3MEDIUM

Key Information:

Vendor

Trendnet

Vendor
CVE Published:
2 May 2026

What is CVE-2026-7610?

A vulnerability exists in the TRENDnet TEW-821DAP firmware that allows for the cleartext transmission of sensitive information through an exploited function in the Firmware Update component. This manipulation can be performed remotely, posing significant risks to data security. The vulnerability affects only a discontinued product, specifically firmware version 1.12B01, which is no longer supported by the vendor. Given its high complexity and the nature of the exploit, it is critical for users of the affected hardware version v1.xR to be cautious and consider alternative solutions.

Affected Version(s)

TEW-821DAP 1.12B01

References

CVSS V4

Score:
6.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

IOT_Res (VulDB User)
VulDB CNA Team
.