Vulnerability Details CVE-2021-20150
Trendnet AC2600 TEW-827DRU version 2.08B01 improperly discloses information via redirection from the setup wizard. Authentication can be bypassed and a user may view information as Admin by manually browsing to the setup wizard and forcing it to redirect to the desired page.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.352
EPSS Ranking 96.9%
CVSS Severity
CVSS v3 Score 5.3
CVSS v2 Score 5.0
Products affected by CVE-2021-20150
-
cpe:2.3:h:trendnet:tew-827dru:2.0
-
cpe:2.3:o:trendnet:tew-827dru_firmware:2.08b01