7.5
CVSSv2

CVE-2003-1442

Published: 31/12/2003 Updated: 29/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The web administration page for the Ericsson HM220dp ADSL modem does not require authentication, which could allow remote malicious users to gain access from the LAN side.

Vulnerable Product Search on Vulmon Subscribe to Product

ericsson hm220dp adsl modem

Exploits

source: wwwsecurityfocuscom/bid/6824/info The Ericsson HM220dp DSL Modem uses a web interface for remote administration and configuration This interface does not require any authentication in order to access There is no option to enable any authentication requirement [script] function exploit(){ windowlocation = "view-source: ...