CVE-2021-20155: Critical severity trendnet tew-827dru vulnerability
Trendnet AC2600 TEW-827DRU version 2.08B01 makes use of hardcoded credentials. It is possible to backup and restore device configurations via the management web interface. These devices are encrypted using a hardcoded password of "12345678".
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-20155?
CVE-2021-20155 has a moderate severity due to the use of hardcoded credentials that can be exploited.
How do I fix CVE-2021-20155?
To fix CVE-2021-20155, update your Trendnet AC2600 TEW-827DRU device firmware to a version that does not use hardcoded credentials.
What are the implications of CVE-2021-20155?
The implications of CVE-2021-20155 include unauthorized access to device configuration and potential compromise of the network.
Which devices are affected by CVE-2021-20155?
CVE-2021-20155 specifically affects Trendnet AC2600 TEW-827DRU devices running firmware version 2.08B01.
What is the nature of the vulnerability in CVE-2021-20155?
The nature of the vulnerability in CVE-2021-20155 stems from hardcoded credentials allowing unauthorized backups and restores of device configurations.