Unspecified Hardcoded Credentials Vulnerability in Comcast Cisco DPC3939 and DPC3941T Firmware

Unspecified Hardcoded Credentials Vulnerability in Comcast Cisco DPC3939 and DPC3941T Firmware

CVE-2017-9488 · MEDIUM Severity

AV:A/AC:L/AU:N/C:P/I:P/A:P

The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421746-170221a-CMCST) and DPC3941T (firmware version DPC3941_2.5s3_PROD_sey) devices allows remote attackers to access the web UI by establishing a session to the wan0 WAN IPv6 address and then entering unspecified hardcoded credentials. This wan0 interface cannot be accessed from the public Internet.

Learn more about our Cis Benchmark Audit For Cisco.