SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-77988

MEDIUM · CVSS 6.6 EPSS 2.09% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-08-22 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

A command injection vulnerability exists in the CLI Configuration Tool of TRENDnet TEW-823DRU firmware version 1.1.02b01, allowing remote attackers to manipulate the nvram_get function. Successful exploitation could lead to unauthorized command execution on the device. Organizations using this router model should prioritize patching to mitigate potential security risks.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit
GitHub PoC Links

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-77988
Severity
MEDIUM
CVSS
6.6
EPSS
2.09%

Original NVD Description

A weakness has been identified in TRENDnet TEW-823DRU 1.1.02b01. This vulnerability affects the function nvram_get of the component CLI Configuration Tool. This manipulation causes command injection. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be used for attacks.