peter bassill · operator
$ cve CVE-2011-0885 JSON

CVE-2011-0885 EXPLOIT

10.0
HIGH · CVSS 2.0 · EPSS 10.1% (pctl 96)

Patch early

A public exploit exists.

Description

A certain Comcast Business Gateway configuration of the SMC SMCD3G-CCR with firmware before 1.4.0.49.2 has a default password of D0nt4g3tme for the mso account, which makes it easier for remote attackers to obtain administrative access via the (1) web interface or (2) TELNET interface.

Scoring

CVSS10.0 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS10.07% — more likely to be exploited than 96% of all CVEs
WeaknessCWE-255
On CISA KEVno
Public exploityes
Published2011-02-08
Last modified2026-06-16

Affected (2)

VendorProduct
smc networkssmcd3g-ccr
smc networkssmcd3g-ccr firmware

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD