Vulnerability Details CVE-2019-11399
An issue was discovered on TRENDnet TEW-651BR 2.04B1, TEW-652BRP 3.04b01, and TEW-652BRU 1.00b12 devices. OS command injection occurs through the get_set.ccp lanHostCfg_HostName_1.1.1.0.0 parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.05
EPSS Ranking 89.0%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 10.0
Products affected by CVE-2019-11399
-
cpe:2.3:h:trendnet:tew-651br:-
-
cpe:2.3:h:trendnet:tew-652brp:-
-
cpe:2.3:h:trendnet:tew-652bru:-
-
cpe:2.3:o:trendnet:tew-651br_firmware:2.04b1
-
cpe:2.3:o:trendnet:tew-652brp_firmware:3.04b01
-
cpe:2.3:o:trendnet:tew-652bru_firmware:1.00b12