Trendnet TEW-929DRU 1.0.0.10 contains a Stored Cross-site Scripting (XSS) vulnerability via the The ssid key of wifi_data parameter on the /captive_portal.htm page.
CVE ID: CVE-2025-25431
Vendor: n/a
Product: n/a
EPSS Score: 0.03% (probability of being exploited)
EPSS Percentile: 3.1% (scored less or equal to compared to others)
EPSS Date: 2025-03-29 (when was this score calculated)