Vulnerability Details CVE-2021-20160
Trendnet AC2600 TEW-827DRU version 2.08B01 contains a command injection vulnerability in the smb functionality of the device. The username parameter used when configuring smb functionality for the device is vulnerable to command injection as root.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.094
EPSS Ranking 92.4%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 9.0
Products affected by CVE-2021-20160
-
cpe:2.3:h:trendnet:tew-827dru:2.0
-
cpe:2.3:o:trendnet:tew-827dru_firmware:2.08b01