CVE-2025-65202

Published
View on NVD ↗
CVSS v3
8
HIGH
CVSS v2
N/A
Affected
1
PROJECT

Description

TRENDnet TEW-657BRM 1.00.1 has an authenticated remote OS command injection vulnerability in the setup.cgi binary, exploitable via the HTTP parameters "command", "todo", and "next_file," which allows an attacker to execute arbitrary commands with root privileges.