5.8
CVSSv2

CVE-2017-9488

Published: 31/07/2017 Updated: 02/08/2017
CVSS v2 Base Score: 5.8 | Impact Score: 6.4 | Exploitability Score: 6.5
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 516
Vector: AV:A/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421746-170221a-CMCST) and DPC3941T (firmware version DPC3941_2.5s3_PROD_sey) devices allows remote malicious users to access the web UI by establishing a session to the wan0 WAN IPv6 address and then entering unspecified hardcoded credentials. This wan0 interface cannot be accessed from the public Internet.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco dpc3939_firmware dpc3939-p20-18-v303r20421746-170221a-cmcst

cisco dpc3941t_firmware dpc3941_2.5s3_prod_sey