CVE-2026-76589: TRENDnet TEW-755AP mycli FUN_401000 stack-based overflow
Published Aug 19, 2026
·Updated
A vulnerability was found in TRENDnet TEW-755AP up to 20260702. Affected is the function FUN401000 of the file /sbin/mycli. The manipulation of the argument ssid results in stack-based buffer overflow. The attack may be launched remotely. The exploit has been made public and could be used.
Affected Software
1 affected component
Trendnet TEW-755AP<=20260702
Event History
Aug 19, 2026
CVE Published
via MITRE·09:30 PM
Data Sourced
via MITRE·09:30 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What access does an attacker need to exploit this issue?
The attack may be launched remotely and requires low privileges. No user interaction is required.
2
Which systems should be treated as affected?
TRENDnet TEW-755AP devices up to version 20260702 are identified as affected. The vulnerable code is in /sbin/mycli, where the ssid argument reaches the FUN_401000 function.
3
Is exploitation theoretical?
No. A public exploit has been reported, so the issue could be used by attackers.