// For flags

CVE-2015-6361

 

Severity Score

6.5
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

The administrative web interface on Cisco DPC3939 (XB3) devices with firmware 121109aCMCST allows remote authenticated users to execute arbitrary commands via unspecified fields, aka Bug ID CSCuw86170.

La interfaz web administrativa en dispositivos Cisco DPC3939 (XB3) con firmware 121109aCMCST permite a usuarios remotos autenticados ejecutar comandos arbitrarios a través de campos no especificados, también conocido como Bug ID CSCuw86170.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Authentication
Single
Confidentiality
Partial
Integrity
Partial
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2015-08-17 CVE Reserved
  • 2015-12-13 CVE Published
  • 2023-06-26 EPSS Updated
  • 2024-08-06 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-20: Improper Input Validation
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Cisco
Search vendor "Cisco"
Dpc3939 Wireless Residential Voice Gateway Firmware
Search vendor "Cisco" for product "Dpc3939 Wireless Residential Voice Gateway Firmware"
121109acmcst_base
Search vendor "Cisco" for product "Dpc3939 Wireless Residential Voice Gateway Firmware" and version "121109acmcst_base"
-
Affected
in Cisco
Search vendor "Cisco"
Dpc3939 Wireless Residential Voice Gateway
Search vendor "Cisco" for product "Dpc3939 Wireless Residential Voice Gateway"
*-
Safe