CVE-2021-20159
HIGH WAF: High
CVSS 8.8
Published: 2021-12-30
CWE-78
Trendnet AC2600 TEW-827DRU version 2.08B01 is vulnerable to command injection. The system log functionality of the firmware allows for command injection as root by supplying a malformed parameter.
WAF Coverage Analysis
OS Command Injection
High WAF Coverage
OWASP: A03:2021 Injection
932xxx - Remote Code Execution
Affected Software
| Vendor | Product | Version |
|---|---|---|
| trendnet | tew-827dru_firmware | 2.08b01 |
References
- www.tenable.com (Exploit, Third Party Advisory)