CVE-2015-6401

Cisco EPC3928 devices with EDVA 5.5.10, 5.5.11, and 5.7.1 allow remote attackers to bypass an intended authentication requirement and execute unspecified administrative functions via a crafted HTTP request, aka Bug ID CSCux24941.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
ciscoCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 91%
VendorProductVersion
ciscoepc3928_docsis_3.0_8x4_wireless_residential_gateway_with_embedded_digital_voice_adapter
5.5.10
ciscoepc3928_docsis_3.0_8x4_wireless_residential_gateway_with_embedded_digital_voice_adapter
5.5.11
ciscoepc3928_docsis_3.0_8x4_wireless_residential_gateway_with_embedded_digital_voice_adapter
5.7.1
𝑥
= Vulnerable software versions