CVE-2026-10158
TRENDnet · TEW-432BRP
A critical stack-based buffer overflow exists in the TRENDnet TEW-432BRP router, reachable via the /goform/formPortFw file.
Executive summary
A critical stack-based buffer overflow in the legacy TRENDnet TEW-432BRP router poses a severe risk of arbitrary code execution.
Vulnerability
The vulnerability is a stack-based buffer overflow in the formPortFw function of the /goform/formPortFw file. Attackers can trigger this flaw by sending a crafted server_name argument, leading to potential remote code execution.
Business impact
With a CVSS score of 8.8, this vulnerability allows an attacker to gain control over the router. Because the product is End-of-Life (EOL), the lack of vendor support means these devices are permanently vulnerable, creating a persistent security gap that could facilitate unauthorized network access and data interception.
Remediation
Immediate Action: Since the product is EOL, the only effective remediation is to decommission and replace the affected TRENDnet TEW-432BRP hardware immediately.
Proactive Monitoring: If immediate removal is not possible, monitor all traffic to the device and restrict access to the management interface to trusted internal IP addresses only.
Compensating Controls: Deploy a network-level firewall or intrusion prevention system to drop traffic directed at the /goform/formPortFw endpoint.
Exploitation status
Public Exploit Available: True
Analyst recommendation
The combination of an 8.8 CVSS score and the End-of-Life status of this product makes it a high-priority risk. Organizations still utilizing this hardware must prioritize immediate replacement to eliminate the threat of exploitation.