CVE-2021-20164: Medium severity trendnet tew-827dru vulnerability
Trendnet AC2600 TEW-827DRU version 2.08B01 improperly discloses credentials for the smb functionality of the device. Usernames and passwords for all smb users are revealed in plaintext on the smbserver.asp page.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability description of CVE-2021-20164?
CVE-2021-20164 reveals usernames and passwords for all SMB users in plaintext on the smbserver.asp page of Trendnet AC2600 TEW-827DRU firmware version 2.08B01.
What is the severity of CVE-2021-20164?
CVE-2021-20164 is considered a high-severity vulnerability due to the exposure of sensitive credentials.
How do I fix CVE-2021-20164?
To fix CVE-2021-20164, users should upgrade the firmware of the Trendnet AC2600 TEW-827DRU to a version that addresses this vulnerability.
Which devices are affected by CVE-2021-20164?
CVE-2021-20164 specifically affects Trendnet AC2600 TEW-827DRU firmware version 2.08B01.
What risks are associated with CVE-2021-20164?
The risks associated with CVE-2021-20164 include unauthorized access to the SMB functionality of the device, leading to potential data breaches.