CVE-2016-10042

HIGH

Arcadyan SLT-00 Star* <R7.7 - Auth Bypass

Title source: llm
STIX 2.1

Description

Authorization Bypass in the Web interface of Arcadyan SLT-00 Star* (aka Swisscom Internet-Box) devices before R7.7 allows unauthorized reconfiguration of the static routing table via an unauthenticated HTTP request, leading to denial of service and information disclosure.

Scores

CVSS v3 7.5
EPSS 0.0095
EPSS Percentile 56.8%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

Details

CWE
CWE-284
Status published
Products (1)
arcadyan/swisscom_internet-box_firmware
Published Jun 29, 2017
Tracked Since Feb 18, 2026