← back
CVE-2016-10401observed exploitation

CVE-2016-10401

50Vexday Risk Score

Prioritize patching. It exploitation observed by VulnCheck and has a public proof of concept.

ssvc Actepss 12%
from disclosure to weapon98 days
Published on NVDJul 25
1st PoC+98d
VulnCheck+122d
exploitation probability
12%top 4% of all CVEs
observed exploitation
yesVulnCheck
3 public exploit(s)
ZyXEL PK5001Z devices have zyad5001 as the su password, which makes it easier for remote attackers to obtain root access if a non-root account password is known (or a non-root default account exists within an ISP's deployment of these devices).
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.