CVE-2025-8759 | TRENDnet TN-200 1.02b02 Lighttpd secdownload.secret hard-coded key (EUVD-2025-24056)
A vulnerability was found in TRENDnet TN-200 1.02b02. It has been rated as problematic. Affected is an unknown function of the component Lighttpd. Performing manipulation of the argument secdownload.secret with the input neV3rUseMe results in use of hard-coded cryptographic key
.
This vulnerability was named CVE-2025-8759. The attack may be initiated remotely. In addition, an exploit is available.
The vendor was contacted early about this disclosure but did not respond in any way.