Home

Description

In the configuration file of racoon in the TRENDnet TEW-WLC100P 2.03b03, the first item of exchage_mode is set to aggressive. Aggressive mode in IKE Phase 1 exposes identity information in plaintext, is vulnerable to offline dictionary attacks, and lacks flexibility in negotiating security parameters.

PUBLISHED Reserved 2025-04-22 | Published 2025-07-21 | Updated 2025-08-07 | Assigner mitre

References

tew-wlc100p.com

gist.github.com/TPCchecker/6d787c4916891f493b274b70abfad860

www.notion.so/...2025-44649-24754a1113e780a4a1d1c4cd6d3ff345

cve.org (CVE-2025-44649)

nvd.nist.gov (CVE-2025-44649)

Download JSON