VendorsTRENDnettew-657brm_firmware1.00.1
Vulnerabilities

TRENDnet tew-657brm Firmware 1.00.1

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

8CVEs
CVE-2026-5349
Trendnet TEW-657BRM setup.cgi add_apcdb stack-based overflow
Published 2026-04-02 · Analyzed
9.0EPSS 0.010
CVE-2026-5350
Trendnet TEW-657BRM setup.cgi update_pcdb stack-based overflow
Published 2026-04-02 · Analyzed
9.0EPSS 0.010
CVE-2026-5351
Trendnet TEW-657BRM setup.cgi add_wps_client os command injection
Published 2026-04-02 · Analyzed
8.8EPSS 0.057
CVE-2026-5352
Trendnet TEW-657BRM setup.cgi edit os command injection
Published 2026-04-02 · Analyzed
8.8EPSS 0.057
CVE-2026-5353
Trendnet TEW-657BRM setup.cgi ping_test os command injection
Published 2026-04-02 · Analyzed
8.8EPSS 0.057
CVE-2026-5354
Trendnet TEW-657BRM setup.cgi vpn_connect os command injection
Published 2026-04-02 · Analyzed
8.8EPSS 0.057
CVE-2026-5355
Trendnet TEW-657BRM setup.cgi vpn_drop os command injection
Published 2026-04-02 · Analyzed
8.8EPSS 0.057
CVE-2025-65202
TRENDnet TEW-657BRM 1.00.1 has an authenticated remote OS command injection vulnerability in the setup.cgi binary, exploitable via the HTTP parameters "command", "todo", and "next_file," which allows an attacker to execute arbitrary commands with root privileges.
Published 2025-11-26 · Analyzed
8.0EPSS 0.067