CVE-2026-75976: TRENDnet Tew-823dru

Critical severity, CVSS 9.9. EPSS: 0.9% chance of exploitation in the next 30 days.

A weakness has been identified in TRENDnet TEW-823DRU 1.1.02b01. Impacted is the function strcpy of the file /cgi-bin/wan.cgi of the component NVRAM. This manipulation of the argument wan_l2tp_password causes stack-based buffer overflow. The attack can be initiated remotely. The exploit has been made available to the public and could be used for attacks.

Affected products

  • TRENDnet Tew-823dru: version 1.1.02b01 only

Published 2026-08-19. Last modified 2026-08-25.