CVE-2026-7606Disclosure(trendnet / tew-821dap)

LOWCVSS 8.1 · HIGH

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A weakness has been identified in TRENDnet TEW-821DAP 1.12B01. This issue affects the function find_hwid/new_gui_update_firmware of the component Firmware Update Handler. Executing a manipulation of the argument dest can lead to insufficient verification of data authenticity. The attack can be launched remotely. Attacks of this nature are highly complex. The exploitability is assessed as difficult. The vendor explains: "That firmware version will only work on our hardware version v1.xR. We have already EOL that product 8 years ago and are no longer selling". This vulnerability only affects products that are no longer supported by the maintainer.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-345

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • tew-821dap
  • tew-821dap_firmware

Threat summary

  • 3 mentions across 1 observed day

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • 3 total mentions across 1 day

Affected systems

Vendors
Products
tew-821daptew-821dap_firmware

2 versions affected across 2 products

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-05-02: 3Technical Details · 2026-05-02: 205-02
Signal classification2 categories
Disclosure
266.7%
General
133.3%
Referenced assets3 URLs
Full discourse3 posts
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-7606 Insufficient Data Authenticity Verification in TRENDnet TEW-821DAP 1.12B01 Firmware Update https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-7606

    Post summary

    A new vulnerability, CVE-2026-7606, is disclosed affecting TRENDnet TEW-821DAP 1.12B01 firmware updates due to insufficient data authenticity verification.

    0000041
    4.0K followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-7606 A weakness has been identified in TRENDnet TEW-821DAP 1.12B01. This issue affects the function find_hwid/new_gui_update_firmware of the component Firmware Update Handle… https://www.cve.org/CVERecord?id=CVE-2026-7606 ----- Traducción: CVE-2026-7606 Se … http://infoflow.cloud`

    Post summary

    CVE-2026-7606 highlights a weakness in TRENDnet TEW‑821DAP’s firmware update functionality, specifically the find_hwid/new_gui_update_firmware function, but no PoC, exploitation evidence, or mitigation details are provided.

    0000025
    75 followersView on X
  • CVE@CVEnew
    General

    CVE-2026-7606 A weakness has been identified in TRENDnet TEW-821DAP 1.12B01. This issue affects the function find_hwid/new_gui_update_firmware of the component Firmware Update Handle… https://www.cve.org/CVERecord?id=CVE-2026-7606

    Post summary

    The post notes a weakness in a TRENDnet device identified by CVE-2026-7606 but provides no proof‑of‑concept, exploit code, active exploitation evidence, patch details, or comprehensive technical description.

    00000195
    57.4K followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
HWtrendnettew-821dap1.0r--
OStrendnettew-821dap_firmware1.12b01--

Explore more