VYPR

TEW-WLC100P

by Trendnet

CVEs (5)

  • CVE-2026-75784CriAug 18, 2026
    risk 0.65cvss 10.0epss 0.01

    A vulnerability was detected in TRENDnet TEW-WLC100 1v2.07b01. Affected by this issue is the function FUN_0040da4c of the file /usr/nginx/sbin/nginx of the component HTTP Header Handler. The manipulation of the argument Server results in stack-based buffer overflow. The attack…

  • CVE-2026-75783CriAug 18, 2026
    risk 0.62cvss 9.6epss 0.00

    A security vulnerability has been detected in TRENDnet TEW-WLC100P 12.07b01. Affected by this vulnerability is an unknown functionality of the file /sbin/netifd of the component DHCP blobmsg Handler. The manipulation leads to stack-based buffer overflow. The attack must be…

  • CVE-2025-44649HigJul 21, 2025
    risk 0.49cvss 7.5epss 0.00

    In the configuration file of racoon in the TRENDnet TEW-WLC100P 2.03b03, the first item of exchage_mode is set to aggressive. Aggressive mode in IKE Phase 1 exposes identity information in plaintext, is vulnerable to offline dictionary attacks, and lacks flexibility in…

  • CVE-2025-44647HigJul 21, 2025
    risk 0.47cvss 7.3epss 0.00

    In TRENDnet TEW-WLC100P 2.03b03, the i_dont_care_about_security_and_use_aggressive_mode_psk option is enabled in the strongSwan configuration file, so that IKE Responders are allowed to use IKEv1 Aggressive Mode with Pre-Shared Keys to conduct offline attacks on the openly…

  • CVE-2026-19891LowAug 15, 2026
    risk 0.24cvss 3.7epss 0.00

    A vulnerability was determined in TRENDnet TEW-WLC100 2.05b02. This affects an unknown function of the file /etc/racoon.conf of the component IKE Phase 1 Aggressive Mode. This manipulation of the argument exchange_mode causes missing encryption of sensitive data. It is possible…