Metrics
Affected Vendors & Products
Wed, 07 Jan 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 07 Jan 2026 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Trendnet
Trendnet tew-811dru |
|
| Vendors & Products |
Trendnet
Trendnet tew-811dru |
Tue, 06 Jan 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A flaw has been found in TRENDnet TEW-811DRU 1.0.2.0. This affects the function setDeviceURL of the file uapply.cgi of the component httpd . This manipulation of the argument DeviceURL causes os command injection. The attack can be initiated remotely. The exploit has been published and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | TRENDnet TEW-811DRU httpd uapply.cgi setDeviceURL os command injection | |
| Weaknesses | CWE-77 CWE-78 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-01-07T14:28:21.636Z
Reserved: 2026-01-06T16:28:05.486Z
Link: CVE-2025-15472
Updated: 2026-01-07T14:28:16.873Z
Status : Received
Published: 2026-01-07T12:16:59.387
Modified: 2026-01-07T12:16:59.387
Link: CVE-2025-15472
No data.
OpenCVE Enrichment
Updated: 2026-01-07T10:08:12Z