CVE-2025-25431 | TRENDnet TEW-929DRU 1.0.0.10 /captive_portal.htm wifi_data cross site scripting (EUVD-2025-5937)
A vulnerability classified as problematic has been found in TRENDnet TEW-929DRU 1.0.0.10. Affected is an unknown function of the file /captive_portal.htm. The manipulation of the argument wifi_data leads to cross site scripting.
This vulnerability is traded as CVE-2025-25431. It is possible to launch the attack remotely. There is no exploit available.