First published: Thu Dec 31 2015(Updated: )
ZyXEL P-660HW-T1 2 devices with ZyNOS firmware 3.40(AXH.0), PMG5318-B20A devices with firmware 1.00AANC0b5, and NBG-418N devices have a default password of 1234 for the admin account, which allows remote attackers to obtain administrative access via unspecified vectors.
Credit: cret@cert.org
Affected Software | Affected Version | How to fix |
---|---|---|
ZyXEL NBG-418N | ||
ZyXEL P-660HW-T1 2 | ||
Zyxel Zynos Firmware | =3.40\(axh.0\) | |
ZyXEL PMG5318-B20A | =v100aanc0b5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-6016 is considered a high severity vulnerability due to the use of a default password that allows unauthorized remote access.
To fix CVE-2015-6016, change the default password for the admin account from '1234' to a strong, unique password.
CVE-2015-6016 affects ZyXEL NBG-418N, ZyXEL P-660HW-T1 2, and ZyXEL PMG5318-B20A devices under specific firmware versions.
Yes, CVE-2015-6016 can be exploited remotely by attackers who can use the default password to gain administrative access.
If CVE-2015-6016 is not fixed, unauthorized users may gain full control over the affected devices, potentially compromising network security.