First published: Fri Jan 26 2024(Updated: )
An issue was discovered in TRENDnet TEW-824DRU version 1.04b01, allows unauthenticated attackers to execute arbitrary code via the system.ntp.server parameter in the sub_420AE0() function. The attack can be launched remotely.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Trendnet TEW-824DRU Firmware | =1.04b01 | |
Trendnet TEW-824DRU Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The CVE-2024-22545 vulnerability is classified as critical due to its ability to allow unauthenticated remote code execution.
To mitigate CVE-2024-22545, update the TRENDnet TEW-824DRU firmware to a version that addresses this vulnerability.
CVE-2024-22545 affects users of the TRENDnet TEW-824DRU router running firmware version 1.04b01.
CVE-2024-22545 allows attackers to execute arbitrary code on the affected device, potentially leading to system compromise.
No, CVE-2024-22545 can be exploited by unauthenticated attackers, which increases the risk of exploitation.