8.8
CVSSv3

CVE-2021-32424

Published: 17/06/2021 Updated: 24/06/2021
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

In TrendNet TW100-S4W1CA 2.3.32, due to a lack of proper session controls, a threat actor could make unauthorized changes to an affected router via a specially crafted web page. If an authenticated user were to interact with a malicious web page it could allow for a complete takeover of the router.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

trendnet tw100-s4w1ca_firmware 2.3.32

Github Repositories

Trendnet_TW100-S4W1CA CVE-2021-32424 assignd for CSRF vulnerability CVE-2021-32426 assigned for XSS vulnerability