CVE detail
CVE-2021-20154 — CVE-2021-20154
Published 2021-12-30 · Modified 2026-06-17 · Vendor trendnet · Product tew-827dru_firmware · Source nvd
HIGH
severity
CVSS-derived band
0.0077
EPSS probability
exploitation probability, 30d
52.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
Trendnet AC2600 TEW-827DRU version 2.08B01 contains an security flaw in the web interface. HTTPS is not enabled on the device by default. This results in cleartext transmission of sensitive information such as passwords.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References