CVE-2026-10158

TRENDnet · TEW-432BRP

A critical stack-based buffer overflow exists in the TRENDnet TEW-432BRP router, reachable via the /goform/formPortFw file.

Executive summary

A critical stack-based buffer overflow in the legacy TRENDnet TEW-432BRP router poses a severe risk of arbitrary code execution.

Vulnerability

The vulnerability is a stack-based buffer overflow in the formPortFw function of the /goform/formPortFw file. Attackers can trigger this flaw by sending a crafted server_name argument, leading to potential remote code execution.

Business impact

With a CVSS score of 8.8, this vulnerability allows an attacker to gain control over the router. Because the product is End-of-Life (EOL), the lack of vendor support means these devices are permanently vulnerable, creating a persistent security gap that could facilitate unauthorized network access and data interception.

Remediation

Immediate Action: Since the product is EOL, the only effective remediation is to decommission and replace the affected TRENDnet TEW-432BRP hardware immediately.

Proactive Monitoring: If immediate removal is not possible, monitor all traffic to the device and restrict access to the management interface to trusted internal IP addresses only.

Compensating Controls: Deploy a network-level firewall or intrusion prevention system to drop traffic directed at the /goform/formPortFw endpoint.

Exploitation status

Public Exploit Available: True

Analyst recommendation

The combination of an 8.8 CVSS score and the End-of-Life status of this product makes it a high-priority risk. Organizations still utilizing this hardware must prioritize immediate replacement to eliminate the threat of exploitation.