ID

VAR-201306-0465


TITLE

Multiple authentication bypass violations exist in TRENDnet TE100-P1U

Trust: 0.6

sources: CNVD: CNVD-2013-08153

DESCRIPTION

The TRENDnet TE100-P1U is a print server that converts any standalone USB network printer into a shared network printer. There are multiple authentication bypass vulnerabilities in the TRENDnet TE100-P1U firmware. An attacker could exploit these vulnerabilities to bypass the authentication mechanism and perform unauthorized operations. This may aid in further attacks. TRENDnet TE100-P1U firmware version 4.11 is affected; other versions may also be vulnerable

Trust: 0.81

sources: CNVD: CNVD-2013-08153 // BID: 60727

IOT TAXONOMY

category:['Network device']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2013-08153

AFFECTED PRODUCTS

vendor:trendnetmodel:te100-p1uscope:eqversion:4.11

Trust: 0.9

sources: CNVD: CNVD-2013-08153 // BID: 60727

CVSS

SEVERITY

CVSSV2

CVSSV3

CNVD: CNVD-2013-08153
value: MEDIUM

Trust: 0.6

CNVD: CNVD-2013-08153
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:N/I:P/A:N
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: PARTIAL
availabilityImpact: NONE
exploitabilityScore: 10.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

sources: CNVD: CNVD-2013-08153

THREAT TYPE

network

Trust: 0.3

sources: BID: 60727

TYPE

Unknown

Trust: 0.3

sources: BID: 60727

EXTERNAL IDS

db:BIDid:60727

Trust: 0.9

db:CNVDid:CNVD-2013-08153

Trust: 0.6

sources: CNVD: CNVD-2013-08153 // BID: 60727

REFERENCES

url:http://www.securityfocus.com/bid/60727

Trust: 0.6

url:http://www.trendnet.com/products/proddetail.asp?prod=130_te100-p1u

Trust: 0.3

sources: CNVD: CNVD-2013-08153 // BID: 60727

CREDITS

Chako

Trust: 0.3

sources: BID: 60727

SOURCES

db:CNVDid:CNVD-2013-08153
db:BIDid:60727

LAST UPDATE DATE

2022-05-17T01:53:13.657000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2013-08153date:2013-06-26T00:00:00
db:BIDid:60727date:2013-06-23T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2013-08153date:2013-06-26T00:00:00
db:BIDid:60727date:2013-06-23T00:00:00