peter bassill · operator
$ cve CVE-2003-1442 JSON

CVE-2003-1442 EXPLOIT

7.5
HIGH · CVSS 2.0 · EPSS 2.6% (pctl 85)

Patch early

A public exploit exists.

Description

The web administration page for the Ericsson HM220dp ADSL modem does not require authentication, which could allow remote attackers to gain access from the LAN side.

Scoring

CVSS7.5 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS2.64% — more likely to be exploited than 85% of all CVEs
WeaknessCWE-287
On CISA KEVno
Public exploityes
Published2003-12-31
Last modified2026-06-16

Affected (1)

VendorProduct
ericssonhm220dp adsl modem

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD