Record summary

CVE-2016-10401 has a selected CVSS score of 8.8 (high); EIP currently links 1 catalogued exploit. VulnCheck reports CVE-2016-10401 use in known ransomware campaigns.

Description

ZyXEL PK5001Z devices have zyad5001 as the su password, which makes it easier for remote attackers to obtain root access if a non-root account password is known (or a non-root default account exists within an ISP's deployment of these devices).

Description source: CVE List

Exploitation context

Known exploitation

VulnCheck KEV
Listed · Nov 24, 2017 · VulnCheck
Reported exploitation
Observed · VulnCheck
Ransomware use
Observed · VulnCheck

Available material

Catalogued exploits
1

Affected products and versions

1
ProductSourceVersion rangeStatus
VulnCheckVersion data not supplied

Proofs of concept

1

Catalogued exploits

ExploitDBZyXEL PK5001Z Modem - Backdoor AccountExploitDB exploitby Matthew SheimoNot analyzed1 file
ExploitDB

PoC details

References

3