CVE-2013-3367

Undocumented TELNET service in TRENDnet TEW-691GR and TEW-692GR when a web page named backdoor contains an HTML parameter of password and a value of j78G¬DFdg_24Mhw3.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:trendnet:tew-691gr_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:trendnet:tew-691gr:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:trendnet:tew-692gr_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:trendnet:tew-692gr:-:*:*:*:*:*:*:*

History

21 Nov 2024, 01:53

Type Values Removed Values Added
References () https://www.ise.io/casestudies/exploiting-soho-routers/ - Not Applicable, Third Party Advisory () https://www.ise.io/casestudies/exploiting-soho-routers/ - Not Applicable, Third Party Advisory
References () https://www.ise.io/soho_service_hacks/ - Not Applicable, Third Party Advisory () https://www.ise.io/soho_service_hacks/ - Not Applicable, Third Party Advisory
References () https://www.ise.io/wp-content/uploads/2017/07/soho_techreport.pdf - Third Party Advisory () https://www.ise.io/wp-content/uploads/2017/07/soho_techreport.pdf - Third Party Advisory

Information

Published : 2019-11-13 21:15

Updated : 2024-11-21 01:53


NVD link : CVE-2013-3367

Mitre link : CVE-2013-3367

CVE.ORG link : CVE-2013-3367


JSON object : View

Products Affected

trendnet

  • tew-691gr_firmware
  • tew-692gr_firmware
  • tew-692gr
  • tew-691gr
CWE
CWE-287

Improper Authentication