CVE-2025-44647 Information

Description

In TRENDnet TEW-WLC100P 2.03b03 the i_dont_care_about_security_and_use_aggressive_mode_psk option is enabled in the strongSwan configuration file so that IKE Responders are allowed to use IKEv1 Aggressive Mode with Pre-Shared Keys to conduct offline attacks on the openly transmitted hash of the PSK.

Reference

http://tew-wlc100p.com https://gist.github.com/TPCchecker/18c32439ed13feaed99f8229d1749892

CNNVD-202507-2662 (Published: 2025-07-21)

Share on: