CVE-2026-75877: TRENDnet TV-IP751WIC alphapd FUN_0043372C stack-based overflow
A flaw has been found in TRENDnet TV-IP751WIC 11.03.03. This vulnerability affects the function SystemNetworkChanged/SystemDDNSChanged/SystemEmailChanged/SystemFTPChanged/websCheckRealm/FUN00432574/FUN0043372C of the component alphapd. Executing a manipulation can lead to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been published and may be used.
Affected Software
Event History
Frequently Asked Questions
Which deployments are identified as affected?
Systems running TRENDnet TV-IP751WIC version 11.03.03 are identified as affected. The vulnerable alphapd component is implicated in several network, DDNS, email, FTP, and realm-checking functions.
What does an attacker need to exploit this issue?
The attack can be launched remotely and requires low attack complexity. The supplied vector indicates low privileges are required, while no user interaction is required.
Is a default installation known to be affected?
The provided data does not state whether the affected functionality is enabled or reachable in a default configuration. Exposure should therefore be assessed by determining whether alphapd is remotely accessible on affected devices.
What can be done while a patch is unavailable?
No vendor fix, workaround, or mitigation is provided in the available data. If immediate patching is not possible, reduce remote exposure to the affected device and restrict access to its management and related network services.