CVE-2018-19240: TRENDnet Tv-IP110WN Firmware

Critical severity, CVSS 9.8. EPSS: 3.7% chance of exploitation in the next 30 days.

Buffer overflow in network.cgi on TRENDnet TV-IP110WN V1.2.2 build 68, V1.2.2.65, and V1.2.2 build 64 and TV-IP121WN V1.2.2 build 28 devices allows attackers to hijack the control flow to any attacker-specified location by crafting a POST request payload (without authentication).

Affected products

  • TRENDnet Tv-IP110WN Firmware: version 1.2.2.64 only; version 1.2.2.65 only; version 1.2.2.68 only
  • TRENDnet Tv-IP121WN Firmware: version 1.2.2.28 only

Published 2018-12-20. Last modified 2026-06-17.