In the configuration file of racoon in the TRENDnet TEW-WLC100P 2.03b03, the first item of exchage_mode is set to aggressive. Aggressive mode in IKE Phase 1 exposes identity information in plaintext, is vulnerable to offline dictionary attacks, and lacks flexibility in negotiating security parameters.
References
Configurations
No configuration.
History
22 Jul 2025, 14:15
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
CWE | CWE-312 |
21 Jul 2025, 17:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-07-21 17:15
Updated : 2025-07-22 14:15
NVD link : CVE-2025-44649
Mitre link : CVE-2025-44649
CVE.ORG link : CVE-2025-44649
JSON object : View
Products Affected
No product.
CWE
CWE-312
Cleartext Storage of Sensitive Information