CVE-2016-7454
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 3.3%
from disclosure to weapon0 days
Published on NVDDec 17
1st PoCAug 9
exploitation probability
3.3%top 13% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
CSRF vulnerability on Technicolor TC dpc3941T (formerly Cisco dpc3941T) devices with firmware dpc3941-P20-18-v303r20421733-160413a-CMCST allows an attacker to change the Wi-Fi password, open the remote management interface, or reset the router.
Affected products
n/a · n/apublic PoCs found — 2
cve_referencepacketstormsecurity.com/files/140121/XFINITY-Gateway-Technicolor-DPC3941T-Cross-Site-Request-Forgery.htmlunverifiedexploitdbwww.exploit-db.com/exploits/40982unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.