CVE-2021-20162: Medium severity trendnet tew-827dru vulnerability
Published Dec 30, 2021
·Updated
Trendnet AC2600 TEW-827DRU version 2.08B01 stores credentials in plaintext. Usernames and passwords are stored in plaintext in the config files on the device. For example, /etc/config/cameo contains the admin password in plaintext.
Affected Software
2 affected components
Trendnet TEW-827DRU firmware=2.08b01
Trendnet TEW-827DRU=2.0
Event History
Dec 30, 2021
CVE Published
via MITRE·09:31 PM
Data Sourced
via MITRE·09:31 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-20162?
The severity of CVE-2021-20162 is rated as medium with a CVSS score of 4.9.
2
How are credentials stored in CVE-2021-20162?
Usernames and passwords are stored in plaintext in the config files on the affected device.
3
Where can the admin password be found in CVE-2021-20162?
The admin password can be found in plaintext in the /etc/config/cameo file on the device.