Browse all 45 CVE security advisories affecting TRENDNet. AI-powered Chinese analysis, POCs, and references for each vulnerability.
TRENDnet operates primarily as a manufacturer of consumer and small business networking hardware, including routers, switches, and IP cameras. Security audits have identified forty-five Common Vulnerabilities and Exposures (CVEs) associated with its product lines, highlighting systemic weaknesses in embedded software development. Historically, these vulnerabilities frequently manifest as remote code execution (RCE) and cross-site scripting (XSS), often stemming from inadequate input validation in web management interfaces. Privilege escalation flaws are also prevalent, allowing unauthenticated attackers to gain administrative control over devices. Notable incidents include the exploitation of default credentials and hardcoded secrets in older camera models, which facilitated large-scale botnet recruitment. The company’s security posture has faced criticism for delayed firmware updates and limited transparency regarding patch cycles. These recurring issues underscore significant challenges in securing IoT infrastructure, where resource constraints often compromise robust authentication and encryption mechanisms.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-5355 | Trendnet TEW-657BRM setup.cgi vpn_drop os command injection — TEW-657BRMCWE-78 | 6.3 | Medium | 2026-04-02 |
| CVE-2026-5354 | Trendnet TEW-657BRM setup.cgi vpn_connect os command injection — TEW-657BRMCWE-78 | 6.3 | Medium | 2026-04-02 |
| CVE-2026-5353 | Trendnet TEW-657BRM setup.cgi ping_test os command injection — TEW-657BRMCWE-78 | 6.3 | Medium | 2026-04-02 |
| CVE-2026-5352 | Trendnet TEW-657BRM setup.cgi edit os command injection — TEW-657BRMCWE-78 | 6.3 | Medium | 2026-04-02 |
| CVE-2026-5351 | Trendnet TEW-657BRM setup.cgi add_wps_client os command injection — TEW-657BRMCWE-78 | 6.3 | Medium | 2026-04-02 |
| CVE-2026-5350 | Trendnet TEW-657BRM setup.cgi update_pcdb stack-based overflow — TEW-657BRMCWE-121 | 8.8 | High | 2026-04-02 |
| CVE-2026-5349 | Trendnet TEW-657BRM setup.cgi add_apcdb stack-based overflow — TEW-657BRMCWE-121 | 8.8 | High | 2026-04-02 |
This page lists every published CVE security advisory associated with TRENDNet. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.