{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/tags/cve-2026-75784/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":[],"_cs_cves":[{"cvss":10,"id":"CVE-2026-75784"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["TEW-WLC100 (1v2.07b01)"],"_cs_severities":["critical"],"_cs_tags":["cve-2026-75784","buffer-overflow","remote-code-execution","network-security"],"_cs_type":"advisory","_cs_vendors":["TRENDnet"],"content_html":"\u003cp\u003eA critical stack-based buffer overflow vulnerability, identified as CVE-2026-75784, affects the TRENDnet TEW-WLC100 wireless controller version 1v2.07b01. The vulnerability resides within the HTTP Header Handler, specifically in the function FUN_0040da4c of the nginx executable (/usr/nginx/sbin/nginx). By sending a specially crafted 'Server' header in an HTTP request, an unauthenticated remote attacker can trigger a memory corruption condition. Successful exploitation of this vulnerability leads to a stack-based buffer overflow, which can be leveraged for arbitrary code execution on the affected device. Publicly available proof-of-concept code confirms that the vulnerability is exploitable. Given the nature of this device as a network controller and the critical CVSS score, immediate attention is required to mitigate remote exploitation risks.\u003c/p\u003e\n\u003ch2 id=\"attack-chain\"\u003eAttack Chain\u003c/h2\u003e\n\u003col\u003e\n\u003cli\u003eAttacker performs reconnaissance to identify internet-facing TRENDnet TEW-WLC100 controllers.\u003c/li\u003e\n\u003cli\u003eAttacker crafts an HTTP request containing an excessively long or malformed string in the 'Server' header field.\u003c/li\u003e\n\u003cli\u003eThe request is transmitted to the target device via the network.\u003c/li\u003e\n\u003cli\u003eThe HTTP Header Handler component receives and processes the request.\u003c/li\u003e\n\u003cli\u003eThe nginx function FUN_0040da4c attempts to parse the 'Server' header argument.\u003c/li\u003e\n\u003cli\u003eLack of proper bounds checking results in a stack-based buffer overflow.\u003c/li\u003e\n\u003cli\u003eAttacker overwrites critical stack memory to redirect program execution.\u003c/li\u003e\n\u003cli\u003eFinal objective is achieved, such as remote code execution or system compromise.\u003c/li\u003e\n\u003c/ol\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eThe vulnerability carries a CVSS score of 10.0, indicating a critical risk of full system compromise. Successful exploitation allows an unauthenticated remote attacker to gain arbitrary code execution capabilities, which could lead to complete loss of confidentiality, integrity, and availability of the wireless controller and potentially the managed network segment.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eBlock all unsolicited inbound HTTP requests to the management interface of TRENDnet TEW-WLC100 devices at the network perimeter.\u003c/li\u003e\n\u003cli\u003ePatch or upgrade affected devices if a firmware update is provided by TRENDnet to address the vulnerability.\u003c/li\u003e\n\u003cli\u003eImplement strict ingress filtering to limit management interface access to authorized administrative IP ranges only.\u003c/li\u003e\n\u003cli\u003eMonitor network traffic for HTTP requests containing abnormally large or non-standard 'Server' header values directed at these controllers.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-08-18T16:55:08Z","date_published":"2026-08-18T16:55:08Z","id":"https://feed.craftedsignal.io/briefs/2026-08-trendnet-wlc100-overflow/","summary":"A critical stack-based buffer overflow in the TRENDnet TEW-WLC100 HTTP Header Handler allows remote attackers to achieve arbitrary code execution via a malformed 'Server' header.","title":"Critical Stack-Based Buffer Overflow in TRENDnet TEW-WLC100","url":"https://feed.craftedsignal.io/briefs/2026-08-trendnet-wlc100-overflow/"}],"language":"en","title":"CraftedSignal Threat Feed - Cve-2026-75784","version":"https://jsonfeed.org/version/1.1"}