Security Advisory
CVE-2024-57590
9.8
CRITICAL
Vulnerability Description
TRENDnet TEW-632BRP v1.010B31 devices have an OS command injection vulnerability in the CGl interface "ntp_sync.cgi",which allows remote attackers to execute arbitrary commands via parameter "ntp_server" passed to the "ntp_sync.cgi" binary through a POST request.
Published Date
January 27, 2025
Official Source
NIST NVD Advisory