CVE-2025-65202
26.11.2025, 21:15
TRENDnet TEW-657BRM 1.00.1 has an authenticated remote OS command injection vulnerability in the setup.cgi binary, exploitable via the HTTP parameters "command", "todo", and "next_file," which allows an attacker to execute arbitrary commands with root privileges.
Awaiting analysis
This vulnerability is currently awaiting analysis.