Vulnerability Description
Undocumented TELNET service in TRENDnet TEW-691GR and TEW-692GR when a web page named backdoor contains an HTML parameter of password and a value of j78G¬DFdg_24Mhw3.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Trendnet | Tew-691Gr Firmware | - |
| Trendnet | Tew-691Gr | - |
| Trendnet | Tew-692Gr Firmware | - |
| Trendnet | Tew-692Gr | - |
Related Weaknesses (CWE)
References
- https://www.ise.io/casestudies/exploiting-soho-routers/Not ApplicableThird Party Advisory
- https://www.ise.io/soho_service_hacks/Not ApplicableThird Party Advisory
- https://www.ise.io/wp-content/uploads/2017/07/soho_techreport.pdfThird Party Advisory
- https://www.ise.io/casestudies/exploiting-soho-routers/Not ApplicableThird Party Advisory
- https://www.ise.io/soho_service_hacks/Not ApplicableThird Party Advisory
- https://www.ise.io/wp-content/uploads/2017/07/soho_techreport.pdfThird Party Advisory
FAQ
What is CVE-2013-3367?
CVE-2013-3367 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Undocumented TELNET service in TRENDnet TEW-691GR and TEW-692GR when a web page named backdoor contains an HTML parameter of password and a value of j78G¬DFdg_24Mhw3.
How severe is CVE-2013-3367?
CVE-2013-3367 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2013-3367?
Check the references section above for vendor advisories and patch information. Affected products include: Trendnet Tew-691Gr Firmware, Trendnet Tew-691Gr, Trendnet Tew-692Gr Firmware, Trendnet Tew-692Gr.