5.3
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A vulnerability has been found in TRENDnet TEW-822DRE 1.00B21/1.01B06. This affects the function sub_43ACF4 of the file /boafrm/formWsc. Such manipulation of the argument peerPin leads to command injection. The attack can be executed remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Basic Information
ID
CVE-2025-15139
Source
VulDB
Published
Dec 28, 2025 at 14:02
Affected Product
Vendor
TRENDnet
Product
TEW-822DRE
Version
1.00B21
Affected Versions
TRENDnet TEW-822DRE 1.00B21
TRENDnet TEW-822DRE 1.01B06
TRENDnet TEW-822DRE 1.01B06