CVE-2015-6401

Cisco Epc3928 Docsis 3.0 8x4 Wireless... - Authentication Bypass

Title source: rule
STIX 2.1

Description

Cisco EPC3928 devices with EDVA 5.5.10, 5.5.11, and 5.7.1 allow remote attackers to bypass an intended authentication requirement and execute unspecified administrative functions via a crafted HTTP request, aka Bug ID CSCux24941.

Exploits (1)

exploitdb WORKING POC
by Patryk Bogdan · textwebappsasp
https://www.exploit-db.com/exploits/39904

References (3)

Core 3
Core References
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/39904/
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1034347

Scores

EPSS 0.0787
EPSS Percentile 92.0%

Details

CWE
CWE-287
Status published
Products (3)
cisco/epc3928_docsis_3.0_8x4_wireless_residential_gateway_with_embedded_digital_voice_adapter 5.5.10
cisco/epc3928_docsis_3.0_8x4_wireless_residential_gateway_with_embedded_digital_voice_adapter 5.5.11
cisco/epc3928_docsis_3.0_8x4_wireless_residential_gateway_with_embedded_digital_voice_adapter 5.7.1
Published Dec 14, 2015
Tracked Since Feb 18, 2026