PT-2022-2963 · Trendnet · Trendnet Tew-831Dr
Published
2022-06-16
·
Updated
2022-06-27
·
CVE-2022-30327
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:C/A:N |
Name of the Vulnerable Software and Affected Versions
TRENDnet TEW-831DR version 1.0 601.130.1.1356
Description
The issue is related to a CSRF vulnerability in the web interface of the TRENDnet TEW-831DR router. An attacker can exploit this vulnerability to change the pre-shared key of the Wi-Fi router if the interface's IP address is known. This can be done remotely.
Recommendations
For version 1.0 601.130.1.1356, consider restricting access to the web interface to minimize the risk of exploitation. As a temporary workaround, avoid using the web interface until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
CSRF
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Trendnet Tew-831Dr