HIGH · 10.0

CVE-2004-0680

Zoom X3 ADSL modem has a terminal running on port 254 that can be accessed using the default HTML management password, even if the password has been changed for the HTTP interface, which could allow r...

Vulnerability Description

Zoom X3 ADSL modem has a terminal running on port 254 that can be accessed using the default HTML management password, even if the password has been changed for the HTTP interface, which could allow remote attackers to gain unauthorized access.

CVSS Score

10.0

HIGH

AV:N/AC:L/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
ZoomModel 5560 X3 Ethernet Adsl ModemAll versions

References

FAQ

What is CVE-2004-0680?

CVE-2004-0680 is a vulnerability with a CVSS score of 10.0 (HIGH). Zoom X3 ADSL modem has a terminal running on port 254 that can be accessed using the default HTML management password, even if the password has been changed for the HTTP interface, which could allow r...

How severe is CVE-2004-0680?

CVE-2004-0680 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2004-0680?

Check the references section above for vendor advisories and patch information. Affected products include: Zoom Model 5560 X3 Ethernet Adsl Modem.