10 CVE-2014-2321

Enriched by CISA Used by Malware Exploit
 

web_shell_cmd.gch on ZTE F460 and F660 cable modems allows remote attackers to obtain administrative access via sendcmd requests, as demonstrated by using "set TelnetCfg" commands to enable a TELNET service with specified credentials.
https://nvd.nist.gov/vuln/detail/CVE-2014-2321

Categories

CWE-264

References


 

AFFECTED (from MITRE)


Vendor Product Versions
n/a n/a
  • n/a [affected]
© 2022 The MITRE Corporation. This work is reproduced and distributed with the permission of The MITRE Corporation.

CPE

cpe start end
Configuration 1
cpe:2.3:h:zte:f460:-:*:*:*:*:*:*:*
cpe:2.3:h:zte:f660:-:*:*:*:*:*:*:*


REMEDIATION




EXPLOITS


Exploit-db.com

id description date
No known exploits

POC Github

Url
No known exploits

Other Nist (github, ...)

Url
https://community.rapid7.com/community/infosec/blog/2014/03/03/disclosure-r7-...
https://community.rapid7.com/community/infosec/blog/2014/03/03/disclosure-r7-...


CAPEC


Common Attack Pattern Enumerations and Classifications

id description severity
No entry