Default Permissions Flaw in TRENDNET TEW-813DRU by TRENDNET
CVE-2026-19841

2.3LOW

Key Information:

Vendor

Trendnet

Vendor
CVE Published:
14 August 2026

What is CVE-2026-19841?

A vulnerability has been identified in the TRENDNET TEW-813DRU router, specifically within the vsftpd configuration file (/etc/vsftpd.conf). This flaw leads to incorrect default permissions that could be exploited remotely. Exploiting this vulnerability requires a considerable level of complexity and is feasible only on devices that are no longer supported by the manufacturer. It is essential for users of affected devices to be aware of this issue and consider mitigating strategies to protect their networks.

Affected Version(s)

TEW-813DRU 1.01b01

References

CVSS V4

Score:
2.3
Severity:
LOW
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

L14Utopia (VulDB User)
.