Junglewise Threat Intelligence

CVE-2026-76590: TRENDnet TEW-755AP stack buffer overflow in WAN configuration

CVE-2026-76590 · Severity: critical · CVSS 9.9 · Published 2026-08-19

Technologies: TRENDnet TEW-755AP. Vendors: TRENDnet.

Executive brief

The TRENDnet TEW-755AP wireless access point contains a stack-based buffer overflow vulnerability in its web-based WAN configuration interface. An attacker on the network can exploit this flaw by sending a specially crafted request to the /cgi-bin/wan.cgi endpoint, allowing them to execute arbitrary code on the device. This could grant an attacker complete control over the access point, compromising all connected devices and network traffic.

Technical details

A stack-based buffer overflow (CWE-121) exists in the /cgi-bin/wan.cgi CGI script's SSI (Server-Side Includes) component when processing the "cameo.wan.wan_pppoe_password_00" parameter. The vulnerable code fails to perform adequate bounds checking on user-supplied input, allowing an attacker to overwrite the stack with arbitrary data and control program execution flow. The vulnerability is remotely exploitable without authentication via HTTP POST requests to the device's web interface. Successful exploitation enables remote code execution with device-level privileges. A public proof-of-concept exploit is available on GitHub, and the issue affects TRENDnet TEW-755AP firmware versions up to 20260702.

Affected products

  • TRENDnet TEW-755AP up to 20260702

Timeline

  • 2026-08-19: disclosed
  • other: Public proof-of-concept exploit available

References

Related threats