skip to main content

Ankündigungen

Produkthinweise, Service-Updates und Firmware-Benachrichtigungen.

Legacy Product: TEW-823DRU (v1.xR) Possible Vulnerabilities

TRENDnet has received report of possible vulnerabilities for TEW-823DRU (v1.xR) Wireless Access Point. The vulnerabilities only apply to hardware versions v1.xR with firmware version v1.1.02b01.

Memory corruption & Stack-based overflow (CVE 2026-75976)
Injection & Command injection (CVE-2026-75984)
Injection & Command injection (CVE-2026-77988)
Injection & Command injection (CVE-2026-75985)

The product has reached End of Life (EOL) and End of Support. TRENDnet can no longer provide updates or technical assistance for it. We strongly recommend that customers retire the product to protect any devices connected to them.

Legacy Product: TV-IP751WIC (v1.xR) Possible Vulnerabilities

TRENDnet has received report of possible vulnerabilities for TV-IP751WIC (v1.xR) Wireless Cloud Camera. The vulnerabilities only apply to hardware versions v1.xR with firmware version 11.03.03.

Memory corruption & Stack-based buffer overflow (CVE-2026-75877)
Memory corruption & Stack-based buffer overflow (CVE-2026-76584)
Injection & Command injection (CVE-2026-76583)

The product has reached End of Life (EOL) and End of Support. TRENDnet can no longer provide updates or technical assistance for it. We strongly recommend that customers retire the product to protect any devices connected to them.

Legacy Product: TEW-821DAP (v1.xR) Possible Vulnerabilities

TRENDnet has received report of possible vulnerabilities for TEW-821DAP (v1.xR) Wireless Access Point. The vulnerabilities only apply to hardware versions v1.xR with firmware version v1.12B01.

Firmware authentication vulnerability in firmware update; (CVE-2026-7606)
Buffer overflow in firmware update process; (CVE-2026-7607)
OS command injection (CVE-2026-7608)
Command injection in firmware update process; (CVE-2026-7609)
Firmware download vulnerability; (CVE-2026-7610)
Firmware integrity vulnerability in firmware update process (CVE-2026-7611)

The product has reached End of Life (EOL) and End of Support. TRENDnet can no longer provide updates or technical assistance for it. We strongly recommend that customers retire the product to protect any devices connected to them.

Legacy Product: TEW-657BRM Wireless Modem Router Possible Vulnerabilities

TRENDnet has received report of possible vulnerabilities for TEW-657BRM Wireless Modem Router.

Stack-based overflow(CVE-2026-5349)

Stack-based overflow(CVE-2026-5350)

OS command injection (CVE-2026-5351)

OS command injection (CVE-2026-5352)

OS command injection (CVE-2026-5353)

OS command injection (CVE-2026-5354)

OS command injection (CVE-2026-5355)

The product has reached End of Life (EOL) and End of Support. TRENDnet can no longer provide updates or technical assistance for it. We strongly recommend that customers retire the product to protect any devices connected to them.

Legacy Products: Possible Vulnerabilities

Legacy Products: Possible Vulnerabilities

TRENDnet has received reports of possible vulnerabilities for the following products.

TEW-713RE: OS command injection (CVE-2025-15471)

TEW-811DRU: OS command injection, (CVE-2025-15472)

TEW-632BRP: stack-based overflow (CVE-2026-4172)

TEW-824DRU: cross site scripting (CVE-2026-4354)

These products have reached End of Life (EOL) and End of Support. TRENDnet can no longer provide updates or technical assistance for them. We strongly recommend that customers retire these products to protect any devices connected to them.

LEGACY PRODUCT: TEW-828DRU HARDWARE VERSION V1.X POSSIBLE VULNERABILITIES

CVE ID: NA
TRENDnet has received report of command injection and buffer overflow vulnerabilities associate with the TEW-828DRU (firmware 1.0.9.0) configuration pages’ scripts.

This product has reached its End of Life (EOL) and End of Support, and TRENDnet is unable to provide additional support.

TRENDnet recommends customers to retire the product to prevent risk of devices possibly connected to it.

LEGACY Products: Password reset services for TRENDnet IP Camera, NVR, and DVR products

Password reset services for TRENDnet IP Camera, NVR, and DVR products may not be available due to manufacturer support limitations and End-of-Life status. We cannot guarantee password recovery for these units. Customers are advised to consider replacement options for unsupported devices.

The affected models are listed below but not limited to:

TV-IP1313PI, TV-IP1314PI, TV-IP1315PI, TV-IP1318PI, TV-IP1319PI, TV-IP1328PI, TV-IP1329PI, TV-IP310PI, TV-IP311PI, TV-IP312PI, TV-IP313PI, TV-IP314PI, TV-IP315PI, TV-IP316PI, TV-IP317PI, TV-IP318PI, TV-IP319PI, TV-IP320PI, TV-IP320PI2K, TV-IP321PI, TV-IP322WI, TV-IP323PI, TV-IP324PI, TV-IP325PI, TV-IP326PI, TV-IP328PI, TV-IP329PI, TV-IP340PI, TV-IP341PI, TV-IP342PI, TV-IP343PI (V2 ONLY), TV-IP344PI (V2 ONLY), TV-IP420P, TV-IP430PI, TV-IP440PI, TV-IP450P, TV-IP450PI, TV-IP460PI, TV-NVR104, TV-NVR104D2, TV-NVR104K, TV-NVR208, TV-NVR208D2, TV-NVR216, TV-NVR216D4, TV-NVR2208, TV-NVR2208D2, TV-NVR2216, TV-NVR2216D4, TV-NVR2432, TV-NVR2432D4, TV-NVR408, TV-NVR416

LEGACY PRODUCTS: TEW-822DRE HARDWARE VERSION V2.0R AND TV-IP110WN POSSIBLE VULNERABILITIES

TRENDnet is aware of the vulnerabilities below.

CVE-2025-8758: TEW-822DRE Wireless Range Extender, firmware 1.03B02, possible vsftpd vulnerability, which may allow attacker to take control of the device.

CVE-2025-8757: TV-IP110WN Wireless Network Camera, firmware 1.2.2 build 68, possible violation of the principle of least privilege, which may allow attached to take control of the device.

These products have reached their End of Life (EOL) and End of Support, and TRENDnet is unable to provide additional support.

TRENDnet recommends customers to retire these products to prevent risk of devices possibly connected to it.

TEW-831DR AC1200 dual-band Wi-Fi router authenticated command line injection/remote code execution vulnerability

TRENDnet is aware of an authenticated command line injection/remote code execution vulnerability in a configuration setup page involving Wi-Fi router TEW-831DR (firmware version V1.0). When exploited successfully, the intruder can make the router unusable or gain access to its operating system.

Please note that this router has reached its End of Life (EOL) and End of Support, and TRENDnet is unable to provide a solution to address this vulnerability or provide additional support. Although exploring this vulnerability requires the router’s management login user name and password, TRENDnet recommends customer to retire these products to prevent risk of devices possibly connected to it.

TEW-929DRU DUAL-BAND WIFI ROUTER CROSS-SITE SCRIPTING VULNERABILITY

TRENDnet is aware of the CVE-2025-25428

We believe CVE-2025-25428 does not affect the product, because it requires the intruders to first login to the device, but each device has aunique password.

For the cross-site script vulnerability, when exploited successfully, the intruder can redirect user’s web browser to malicious website. TRENDnet has released firmware update to address the vulnerability, please click on the link below to go to the product's firmware download page. Or, you can login to the router's management page using web browser (http://tew-929dru ), click on “Management” on the left, click on “Firmware/Configuration”, click on “CHECK” under “Online Firmware Upgrade”, and then follow the on-screen instruction to upgrade the firmware.
https://www.trendnet.com/support/support-detail.asp?prod=135_TEW-929DRU