CVE-2026-7607: TRENDnet TEW-821DAP Firmware Udpate auto_update_firmware buffer overflow
A security vulnerability has been detected in TRENDnet TEW-821DAP 1.12B01. Impacted is the function autoupdatefirmware of the component Firmware Udpate. The manipulation of the argument str leads to buffer overflow. The attack may be initiated remotely. The vendor explains: "That firmware version will only work on our hardware version v1.xR. We have already EOL that product 8 years ago and are no longer selling". This vulnerability only affects products that are no longer supported by the maintainer.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-7607?
CVE-2026-7607 is classified as a high severity vulnerability due to the potential for remote code execution from the buffer overflow.
How do I fix CVE-2026-7607?
To fix CVE-2026-7607, update the firmware of the TRENDnet TEW-821DAP to the latest version provided by TRENDnet.
What components are affected by CVE-2026-7607?
CVE-2026-7607 affects the auto_update_firmware function within the Firmware Update component of TRENDnet TEW-821DAP version 1.12B01.
What can an attacker do if CVE-2026-7607 is exploited?
If exploited, CVE-2026-7607 can allow an attacker to execute arbitrary code on the TRENDnet TEW-821DAP device.
When was CVE-2026-7607 disclosed?
CVE-2026-7607 was disclosed in 2026, highlighting critical security concerns in the TRENDnet TEW-821DAP firmware.