forum.openwrt.org
https://forum.openwrt.org/viewtopic.php?id=62266 CVE-2016-10401
HIGHRansomware
ZyXEL PK5001Z Remote Authentication Bypass
Record summary
CVE-2016-10401 has a selected CVSS score of 8.8 (high); EIP currently links 1 catalogued exploit. VulnCheck reports CVE-2016-10401 use in known ransomware campaigns.
Description
ZyXEL PK5001Z devices have zyad5001 as the su password, which makes it easier for remote attackers to obtain root access if a non-root account password is known (or a non-root default account exists within an ISP's deployment of these devices).
Description source: CVE List
Exploitation context
Known exploitation
- VulnCheck KEV
- Listed · Nov 24, 2017 · VulnCheck
- Reported exploitation
- Observed · VulnCheck
- Ransomware use
- Observed · VulnCheck
Available material
- Catalogued exploits
- 1
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
pk5001z_firmwareBrowse Zyxel / pk5001z_firmware | VulnCheck | Version data not supplied | |
Proofs of concept
1Catalogued exploits
ExploitDBZyXEL PK5001Z Modem - Backdoor AccountExploitDB exploitby Matthew SheimoNot analyzed1 file
References
3nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2016-10401 43105exploit
https://www.exploit-db.com/exploits/43105