CVE-2011-0885
28Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 10%
from disclosure to weapon0 days
Published on NVDFeb 8
1st PoCFeb 6
exploitation probability
10%top 5% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
A certain Comcast Business Gateway configuration of the SMC SMCD3G-CCR with firmware before 1.4.0.49.2 has a default password of D0nt4g3tme for the mso account, which makes it easier for remote attackers to obtain administrative access via the (1) web interface or (2) TELNET interface.
Affected products
n/a · n/apublic PoCs found — 2
cve_referencewww.exploit-db.com/exploits/16123/unverifiedexploitdbwww.exploit-db.com/exploits/16123unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://seclists.org/bugtraq/2011/Feb/36http://secunia.com/advisories/43199http://securityreason.com/securityalert/8066https://exchange.xforce.ibmcloud.com/vulnerabilities/65184https://www.trustwave.com/spiderlabs/advisories/TWSL2011-002.txthttp://www.exploit-db.com/exploits/16123/http://www.securityfocus.com/archive/1/516205/100/0/threadedhttp://www.securityfocus.com/bid/46215