Impact
A flaw in TRENDnet TEW‑WLC100 firmware version 2.05b02 allows an attacker to manipulate the exchange_mode setting in /etc/racoon.conf, causing the IKE Phase 1 aggressive mode to operate without encryption. This leads to the transmission of sensitive data in clear text. The vulnerability is exploitable remotely, but the attack requires nontrivial skills to configure the remote host and modify the configuration file, and the reported exploitability is classified as difficult. This is an example of improper handling of cryptographic parameters (CWE‑310) and weak cryptographic enforcement (CWE‑311).
Affected Systems
This issue affects TRENDnet TEW‑WLC100 wireless network controllers running firmware 2.05b02. The problem originates in the device’s racoon.conf configuration used by the IKE Phase 1 aggressive mode. No other TRENDnet products or versions are currently reported to be impacted.
Risk and Exploitability
The CVSS score of 6.3 reflects a moderate risk; EPSS data is not available, so the likelihood of widespread exploitation cannot be quantified. The vulnerability is not listed in the CISA KEV catalog, suggesting no confirmed active exploits. Successful exploitation would require remote access to the device that can read or modify the racoon.conf file, possibly via a web interface or management protocol, and the ability to enforce the modified exchange_mode setting. Once accomplished, the attacker could capture unencrypted VPN traffic and compromise confidentiality of exchanged data.
OpenCVE Enrichment