CVE-2024-57590
TRENDnet TEW-632BRP v1.010B31 devices have an OS command injection vulnerability in the CGl interface “ntp_sync.cgi”,which allows remote attackers to execute arbitrary commands via parameter “ntp_server” passed to the “ntp_sync.cgi” binary through a POST request.
More information : https://github.com/IdaJea/IOT_vuln_1/blob/master/tew632/ntp_sync.md