First published: Tue Aug 10 2021(Updated: )
Null Pointer Dereference vulnerability in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03, and TEW-825DAP 1.11B03, which could let a remote malicious user cause a denial of service by sending a POST request to apply_cgi via an action ping_test without a ping_ipaddr key.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Trendnet Tew-755ap Firmware | =1.11b03 | |
TRENDnet TEW-755AP | ||
Trendnet Tew-755ap2kac Firmware | =1.11b03 | |
Trendnet Tew-755ap2kac | ||
Trendnet Tew-821dap2kac Firmware | =1.11b03 | |
Trendnet Tew-821dap2kac | ||
Trendnet Tew-825dap Firmware | =1.11b03 | |
Trendnet Tew-825dap |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-28841 is a Null Pointer Dereference vulnerability in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03, and TEW-825DAP 1.11B03 firmware versions.
CVE-2021-28841 could allow a remote malicious user to cause a denial of service by sending a POST request to apply_cgi via an action ping_test without a ping_ipaddr key.
CVE-2021-28841 has a severity rating of 7.5 (High).
CVE-2021-28841 affects TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03, and TEW-825DAP 1.11B03 firmware versions.
To mitigate the CVE-2021-28841 vulnerability, users should update to the latest firmware version provided by TRENDnet.