CVE-2021-20161

CVE-2021-20161

Trendnet AC2600 TEW-827DRU version 2.08B01 does not have sufficient protections for the UART functionality. A malicious actor with physical access to the device is able to connect to the UART port via a serial connection. No username or password is required and the user is given a root shell with full control of the device.

Source: CVE-2021-20161

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다