Vulnerability CVE-2004-0680


Published: 2004-08-06   Modified: 2012-02-12

Description:
Zoom X3 ADSL modem has a terminal running on port 254 that can be accessed using the default HTML management password, even if the password has been changed for the HTTP interface, which could allow remote attackers to gain unauthorized access.

CVSS2 => (AV:N/AC:L/Au:N/C:C/I:C/A:C)

CVSS Base Score
Impact Subscore
Exploitability Subscore
10/10
10/10
10/10
Exploit range
Attack complexity
Authentication
Remote
Low
No required
Confidentiality impact
Integrity impact
Availability impact
Complete
Complete
Complete
Affected software
ZOOM -> Model 5560 x3 ethernet adsl modem 

 References:
http://marc.info/?l=bugtraq&m=108915255520924&w=2
http://www.securityfocus.com/bid/10669
http://xforce.iss.net/xforce/xfdb/16639

Copyright 2024, cxsecurity.com

 

Back to Top