Vulnerability Details CVE-2021-20150
Trendnet AC2600 TEW-827DRU version 2.08B01 improperly discloses information via redirection from the setup wizard. Authentication can be bypassed and a user may view information as Admin by manually browsing to the setup wizard and forcing it to redirect to the desired page.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.388
EPSS Ranking 97.1%
CVSS Severity
CVSS v3 Score 5.3
CVSS v2 Score 5.0
Products affected by CVE-2021-20150
-
cpe:2.3:h:trendnet:tew-827dru:2.0
-
cpe:2.3:o:trendnet:tew-827dru_firmware:2.08b01