Vulnerabilities > CVE-2015-6016 - Credentials Management vulnerability in Zyxel Nbg-418N, Pmg5318-B20A Firmware and Zynos Firmware

047910
CVSS 9.8 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
zyxel
CWE-255
critical

Summary

ZyXEL P-660HW-T1 2 devices with ZyNOS firmware 3.40(AXH.0), PMG5318-B20A devices with firmware 1.00AANC0b5, and NBG-418N devices have a default password of 1234 for the admin account, which allows remote attackers to obtain administrative access via unspecified vectors.

Common Weakness Enumeration (CWE)

Msbulletin

bulletin_idMS16-079
bulletin_url
date2016-06-14T00:00:00
impactElevation of Privilege
knowledgebase_id3160339
knowledgebase_url
severityImportant
titleSecurity Update for Microsoft Exchange Server