What is CVE-2026-75976?
A critical vulnerability was found in TRENDnet TEW-823DRU version 1.1.02b01. The manipulation of the `wan_l2tp_password` argument in the `strcpy` function within `/cgi-bin/wan.cgi` leads to a stack-based buffer overflow. Remote exploitation is possible, and users are strongly advised to update the device firmware immediately.
Azərbaycanca: TRENDnet TEW-823DRU cihazının 1.1.02b01 versiyasında kritik bir boşluq aşkar edilib. `/cgi-bin/wan.cgi` faylındakı `strcpy` funksiyasında `wan_l2tp_password` arqumentinin manipulyasiyası stack-based buffer overflow yaradır. Bu zəiflik uzaqdan kod icrasına imkan verə bilər, istifadəçilərə dərhal cihaz firmware-ni yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-119
FAQ2
In which version of TRENDnet TEW-823DRU was the critical vulnerability found?
The critical vulnerability was found in version 1.1.02b01 of the TRENDnet TEW-823DRU device.
What can be the consequence of exploiting CVE-2026-75976?
This stack-based buffer overflow vulnerability can allow remote code execution.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.