CVE-2016-10401
50Vexday Risk Score
Prioritize patching. It exploitation observed by VulnCheck and has a public proof of concept.
ssvc Actepss 12%
from disclosure to weapon98 days
Published on NVDJul 25
1st PoC+98d
VulnCheck+122d
exploitation probability
12%top 4% of all CVEs
observed exploitation
yesVulnCheck
3 public exploit(s)
ZyXEL PK5001Z devices have zyad5001 as the su password, which makes it easier for remote attackers to obtain root access if a non-root account password is known (or a non-root default account exists within an ISP's deployment of these devices).
Affected products
n/a · n/apublic PoCs found — 3
cve_referencewww.exploit-db.com/exploits/43105/unverifiedexploitdbwww.exploit-db.com/exploits/43105unverifiedvulncheckvulncheck.com/xdb/d2c34d419a35unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.