Home

Description

In TRENDnet TEW-WLC100P 2.03b03, the i_dont_care_about_security_and_use_aggressive_mode_psk option is enabled in the strongSwan configuration file, so that IKE Responders are allowed to use IKEv1 Aggressive Mode with Pre-Shared Keys to conduct offline attacks on the openly transmitted hash of the PSK.

PUBLISHED Reserved 2025-04-22 | Published 2025-07-21 | Updated 2025-08-07 | Assigner mitre

References

tew-wlc100p.com

gist.github.com/TPCchecker/18c32439ed13feaed99f8229d1749892

www.notion.so/...2025-44647-24754a1113e780b0a130d4439861bf3c

cve.org (CVE-2025-44647)

nvd.nist.gov (CVE-2025-44647)

Download JSON