CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
AV:N/AC:L/Au:N/C:P/I:P/A:P
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
AI Score
Confidence
High
EPSS
Percentile
61.0%
The TRENDnet TI-PG1284i switch(hw v2.0R) prior to version 2.0.2.S0 suffers from an integer underflow vulnerability. This vulnerability exists in its lldp related component. Due to lack of proper validation on length field of PortID TLV, by sending a crafted lldp packet to the device, integer underflow would occur and the negative number will be passed to memcpy() later, which may cause buffer overflow or invalid memory access.
Vendor | Product | Version | CPE |
---|---|---|---|
trendnet | ti-pg1284i_firmware | * | cpe:2.3:o:trendnet:ti-pg1284i_firmware:*:*:*:*:*:*:*:* |
trendnet | ti-pg1284i | 2.0r | cpe:2.3:h:trendnet:ti-pg1284i:2.0r:*:*:*:*:*:*:* |
trendnet | ti-g102i | - | cpe:2.3:h:trendnet:ti-g102i:-:*:*:*:*:*:*:* |
trendnet | ti-g102i_firmware | - | cpe:2.3:o:trendnet:ti-g102i_firmware:-:*:*:*:*:*:*:* |
trendnet | ti-g160i | - | cpe:2.3:h:trendnet:ti-g160i:-:*:*:*:*:*:*:* |
trendnet | ti-g160i_firmware | - | cpe:2.3:o:trendnet:ti-g160i_firmware:-:*:*:*:*:*:*:* |
trendnet | ti-g642i | - | cpe:2.3:h:trendnet:ti-g642i:-:*:*:*:*:*:*:* |
trendnet | ti-g642i_firmware | - | cpe:2.3:o:trendnet:ti-g642i_firmware:-:*:*:*:*:*:*:* |
trendnet | ti-pg102i | - | cpe:2.3:h:trendnet:ti-pg102i:-:*:*:*:*:*:*:* |
trendnet | ti-pg102i_firmware | - | cpe:2.3:o:trendnet:ti-pg102i_firmware:-:*:*:*:*:*:*:* |
More
CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
AV:N/AC:L/Au:N/C:P/I:P/A:P
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
AI Score
Confidence
High
EPSS
Percentile
61.0%