CVE-2026-76590: TRENDnet Tew-755ap

Critical severity, CVSS 9.9. EPSS: 0.9% chance of exploitation in the next 30 days.

A vulnerability was identified in TRENDnet TEW-755AP up to 20260702. Affected by this issue is some unknown functionality of the file /cgi-bin/wan.cgi of the component ssi. Such manipulation of the argument cameo.wan.wan_pppoe_password_00 leads to stack-based buffer overflow. The attack can be executed remotely. The exploit is publicly available and might be used.

Affected products

  • TRENDnet Tew-755ap: version 20260702 only

Published 2026-08-19. Last modified 2026-08-21.