← Vulnerability feed

Vulnerability record · CVE-2023-51148 · published 26 March 2024

CVE-2023-51148: Trendnet tew-821dap firmware stack-based buffer overflow vulnerability

Trendnet · Tew 821dap Firmware

An issue in TRENDnet Trendnet AC1200 Dual Band PoE Indoor Wireless Access Point TEW-821DAP v.3.00b06 allows an attacker to execute arbitrary code via the 'mycli' command-line interface component.

8.0 CVSS 3.1 High EPSS 0.53% · top 57.6% CWE-121 · Stack-based buffer overflow
8.0CVSS 3.1 base score
0.53%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
2References, 2 tagged exploit
9 Jul 2026Last modified by NVD

Description

An issue in TRENDnet Trendnet AC1200 Dual Band PoE Indoor Wireless Access Point TEW-821DAP v.3.00b06 allows an attacker to execute arbitrary code via the 'mycli' command-line interface component.

CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2023-51148 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

8.7CVE-2026-7607Trendnet tew-821dap firmware memory buffer overflow vulnerabilityA security vulnerability has been detected in TRENDnet TEW-821DAP 1.12B01. Impacted is the function auto_update_firmware of the component Firmware Ud…EPSS 1.0%8.0CVE-2023-51146Trendnet tew-821dap firmware stack-based buffer overflow vulnerabilityBuffer Overflow vulnerability in TRENDnet AC1200 TEW-821DAP with firmware version 3.00b06 allows an attacker to execute arbitrary code via the adm_ad…EPSS 0.50%8.0CVE-2023-51147Trendnet tew-821dap firmware stack-based buffer overflow vulnerabilityBuffer Overflow vulnerability in TRENDnet Trendnet AC1200 TEW-821DAP with firmware version 3.00b06 allows an attacker to execute arbitrary code via t…EPSS 0.50%6.3CVE-2026-7611Trendnet tew-821dap firmware insufficient verification of data authenticity vulnerabilityA vulnerability was found in TRENDnet TEW-821DAP up to 1.12B01. This impacts the function platform_do_upgrade_cameo_dev of the file cameo_dev.sh of t…EPSS 0.31%6.3CVE-2026-7606Trendnet tew-821dap firmware insufficient verification of data authenticity vulnerabilityA weakness has been identified in TRENDnet TEW-821DAP 1.12B01. This issue affects the function find_hwid/new_gui_update_firmware of the component Fir…EPSS 0.31%2.9CVE-2026-7610Trendnet tew-821dap firmware cleartext transmission vulnerabilityA vulnerability has been found in TRENDnet TEW-821DAP 1.12B01. This affects an unknown function of the file /www/cgi/ssi of the component Firmware Up…EPSS 0.45%2.1CVE-2026-7609Trendnet tew-821dap firmware command injection vulnerabilityA flaw has been found in TRENDnet TEW-821DAP up to 1.12B01. The impacted element is the function tools_diagnostic of the file /tmp/diagnostic of the …EPSS 5.7%2.0CVE-2026-7608Trendnet tew-821dap firmware command injection vulnerabilityA vulnerability was detected in TRENDnet TEW-821DAP up to 1.12B01. The affected element is the function tools_diagnostic. The manipulation results in…EPSS 9.8%

Source: NIST National Vulnerability Database (record CVE-2023-51148), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.