CVE-2018-19241: Buffer Overflow
Buffer overflow in video.cgi on TRENDnet TV-IP110WN V1.2.2 build 68, V1.2.2.65, and V1.2.2 build 64 and TV-IP121WN V1.2.2 build 28 devices allows attackers to hijack the control flow to any attacker-specified location by crafting a POST request payload (without authentication).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-19241?
CVE-2018-19241 is considered a critical vulnerability due to its potential for remote code execution.
How do I fix CVE-2018-19241?
To mitigate CVE-2018-19241, update the firmware of the TRENDnet TV-IP110WN and TV-IP121WN devices to a patched version.
What devices are affected by CVE-2018-19241?
CVE-2018-19241 affects TRENDnet TV-IP110WN versions 1.2.2.64, 1.2.2.65, and 1.2.2.68, as well as TV-IP121WN version 1.2.2.28.
What type of attack can exploit CVE-2018-19241?
CVE-2018-19241 can be exploited via a crafted POST request that allows attackers to hijack the control flow of the device.
Is authentication required to exploit CVE-2018-19241?
No, CVE-2018-19241 can be exploited without authentication, making it particularly dangerous.