A vulnerability was determined in TRENDnet TEW-WLC100 2.05b02. This affects an unknown function of the file /etc/racoon.conf of the component IKE Phase 1 Aggressive Mode. This manipulation of the argument exchange_mode causes missing encryption of sensitive data. It is possible to initiate the attack remotely. The complexity of an attack is rather high. The exploitability is reported as difficult. The vendor was contacted early about this disclosure.

Project Subscriptions

Vendors Products
Trendnet Subscribe
Tew-wlc100 Subscribe
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Sat, 15 Aug 2026 11:15:00 +0000

Type Values Removed Values Added
Description A vulnerability was determined in TRENDnet TEW-WLC100 2.05b02. This affects an unknown function of the file /etc/racoon.conf of the component IKE Phase 1 Aggressive Mode. This manipulation of the argument exchange_mode causes missing encryption of sensitive data. It is possible to initiate the attack remotely. The complexity of an attack is rather high. The exploitability is reported as difficult. The vendor was contacted early about this disclosure.
Title TRENDnet TEW-WLC100 IKE Phase 1 Aggressive Mode racoon.conf missing encryption
First Time appeared Trendnet
Trendnet tew-wlc100
Weaknesses CWE-310
CWE-311
CPEs cpe:2.3:a:trendnet:tew-wlc100:*:*:*:*:*:*:*:*
Vendors & Products Trendnet
Trendnet tew-wlc100
References
Metrics cvssV2_0

{'score': 2.6, 'vector': 'AV:N/AC:H/Au:N/C:P/I:N/A:N/E:ND/RL:ND/RC:UR'}

cvssV3_0

{'score': 3.7, 'vector': 'CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N/E:X/RL:X/RC:R'}

cvssV3_1

{'score': 3.7, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N/E:X/RL:X/RC:R'}

cvssV4_0

{'score': 6.3, 'vector': 'CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-08-15T11:00:08.719Z

Reserved: 2026-08-14T18:41:58.487Z

Link: CVE-2026-19891

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-08-15T11:16:26.340

Modified: 2026-08-15T11:16:26.340

Link: CVE-2026-19891

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses