CVE-2026-77945: TRENDnet TEW-821DAP ssi upload.cgi command injection
A vulnerability was found in TRENDnet TEW-821DAP 2.2.01b05. Affected is an unknown function of the file /cgi-bin/upload.cgi of the component ssi. Performing a manipulation of the argument filename results in command injection. The attack may be initiated remotely. The exploit has been made public and could be used.
Affected Software
Event History
Frequently Asked Questions
What access does an attacker need to exploit this issue?
The vulnerability is remotely exploitable and requires low privileges. No user interaction is required.
Which component and input should be prioritized for investigation?
The affected endpoint is /cgi-bin/upload.cgi in the ssi component. The reported injection point is the filename argument.
Is public exploit information available?
Yes. The exploit has been made public and could be used.
How can I determine whether a device is affected?
Verify whether the device is a TRENDnet TEW-821DAP running version 2.2.01b05, and inspect exposure of /cgi-bin/upload.cgi. The provided information does not identify other affected versions.