CVE-2021-28843 is a Null Pointer Dereference vulnerability affecting TRENDnet TEW-755AP, TEW-755AP2KAC, TEW-821DAP2KAC, and TEW-825DAP wireless access points running firmware version 1.11B03. This flaw, triggered by sending a POST request with an unknown action name to apply_cgi, carries a CVSSv3 score of 7.5 (High), indicating a network-based attack with low complexity that can lead to high availability impact. There is currently no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1.11b03CPE matchmatch criteria | cpe:2.3:o:trendnet:tew-755ap_firmware:1.11b03:*:*:*:*:*:*:* | ||
1.11b03CPE matchmatch criteria | cpe:2.3:o:trendnet:tew-755ap2kac_firmware:1.11b03:*:*:*:*:*:*:* | ||
1.11b03CPE matchmatch criteria | cpe:2.3:o:trendnet:tew-821dap2kac_firmware:1.11b03:*:*:*:*:*:*:* | ||
1.11b03CPE matchmatch criteria | cpe:2.3:o:trendnet:tew-825dap_firmware:1.11b03:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.