A command injection vulnerability has been identified in TRENDnet TEW-821DAP version 2.2.01b05. The vulnerability resides in the /cgi-bin/upload.cgi file within the ssi component, where manipulation of the filename argument allows for command injection. The attack can be initiated remotely without physical access to the device. A public exploit has been released, increasing the risk of active exploitation. The vulnerability affects an unknown function within the identified file. Given the remote exploitability and public exploit availability, this poses a significant risk to affected devices. TRENDnet TEW-821DAP is a wireless access point, making this vulnerability particularly concerning for network security. Users are advised to apply patches or mitigations as soon as they become available.