Vulnerabilities (CVE)

Filtered by vendor Trendnet Subscribe
Filtered by product Tew-929dru
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-25429 1 Trendnet 2 Tew-929dru, Tew-929dru Firmware 2025-05-21 N/A 4.8 MEDIUM
Trendnet TEW-929DRU 1.0.0.10 contains a Stored Cross-site Scripting (XSS) vulnerability via the r_name variable inside the have_same_name function on the /addschedule.htm page.
CVE-2025-25428 1 Trendnet 2 Tew-929dru, Tew-929dru Firmware 2025-05-21 N/A 8.0 HIGH
TRENDnet TEW-929DRU 1.0.0.10 was discovered to contain a hardcoded password vulnerability in /etc/shadow, which allows attackers to log in as root.
CVE-2025-25430 1 Trendnet 2 Tew-929dru, Tew-929dru Firmware 2025-05-21 N/A 4.8 MEDIUM
Trendnet TEW-929DRU 1.0.0.10 contains a Stored Cross-site Scripting (XSS) vulnerability via the configname parameter on the /cbi_addcert.htm page.
CVE-2025-25431 1 Trendnet 2 Tew-929dru, Tew-929dru Firmware 2025-04-30 N/A 4.8 MEDIUM
Trendnet TEW-929DRU 1.0.0.10 contains a Stored Cross-site Scripting (XSS) vulnerability via the The ssid key of wifi_data parameter on the /captive_portal.htm page.