SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-76590

CRITICAL · CVSS 9.9 EPSS 0.61% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-08-19 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A stack-based buffer overflow vulnerability exists in the TRENDnet TEW-755AP, specifically affecting the /cgi-bin/wan.cgi component when manipulating the argument cameo.wan.wan_pppoe_password_00. This critical flaw, which can be exploited remotely, poses a significant risk as it allows attackers to execute arbitrary code on the device. Organizations using this product should prioritize immediate remediation to mitigate potential exploitation.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-76590
Severity
CRITICAL
CVSS
9.9
EPSS
0.61%

Original NVD Description

A vulnerability was identified in TRENDnet TEW-755AP up to 20260702. Affected by this issue is some unknown functionality of the file /cgi-bin/wan.cgi of the component ssi. Such manipulation of the argument cameo.wan.wan_pppoe_password_00 leads to stack-based buffer overflow. The attack can be executed remotely. The exploit is publicly available and might be used.