Trendnet AC2600 TEW-827DRU version 2.08B01 contains a command injection vulnerability in the smb functionality of the device. The username parameter used when configuring smb functionality for the device is vulnerable to command injection as root.
References
Link Resource
https://www.tenable.com/security/research/tra-2021-54 Exploit Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: tenable

Published: 2021-12-30T21:31:08

Updated: 2021-12-30T21:31:08

Reserved: 2020-12-17T00:00:00


Link: CVE-2021-20160

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-12-30T22:15:09.113

Modified: 2022-07-12T17:42:04.277


Link: CVE-2021-20160

JSON object: View

cve-icon Redhat Information

No data.

CWE