Vulnerability Details CVE-2018-19241
Buffer overflow in video.cgi on TRENDnet TV-IP110WN V1.2.2 build 68, V1.2.2.65, and V1.2.2 build 64 and TV-IP121WN V1.2.2 build 28 devices allows attackers to hijack the control flow to any attacker-specified location by crafting a POST request payload (without authentication).
Exploit prediction scoring system (EPSS) score
EPSS Score 0.008
EPSS Ranking 72.5%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Products affected by CVE-2018-19241
-
cpe:2.3:h:trendnet:tv-ip110wn:-
-
cpe:2.3:h:trendnet:tv-ip121wn:-
-
cpe:2.3:o:trendnet:tv-ip110wn_firmware:1.2.2.64
-
cpe:2.3:o:trendnet:tv-ip110wn_firmware:1.2.2.65
-
cpe:2.3:o:trendnet:tv-ip110wn_firmware:1.2.2.68
-
cpe:2.3:o:trendnet:tv-ip121wn_firmware:1.2.2.28