10
CVSSv2

CVE-2014-2321

Published: 11/03/2014 Updated: 11/03/2014
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

web_shell_cmd.gch on ZTE F460 and F660 cable modems allows remote malicious users to obtain administrative access via sendcmd requests, as demonstrated by using "set TelnetCfg" commands to enable a TELNET service with specified credentials.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

zte f660 -

zte f460 -

Github Repositories

Windows ZTE Loader CVE-2014-2321 Requires ZMAP For Windows Or BigEar

Windows-ZTE-Loader Windows ZTE Loader CVE-2014-2321 Requires ZMAP For Windows Or BigEar The application works by handling the output of a running scan via zmap or bigear, that output is piped into the zte application, see your operating systems documentation for piping output from a running program via CMD