CVE-2014-2321: exploitation status and patch state
CVE-2014-2321 · EPSS 59%
web_shell_cmd.gch on ZTE F460 and F660 cable modems allows remote attackers to obtain administrative access via sendcmd requests, as demonstrated by using "set TelnetCfg" commands to enable a TELNET service with specified credentials.
Is CVE-2014-2321 exploited?
Not in the CISA KEV catalog.
EPSS puts exploitation in the next 30 days at 59%.
Public exploit code: none found in monitored sources.
Public detection rules exist.
Which products and versions are affected?
No affected package list recorded here yet.
Is there a patch?
No patch identifier recorded here yet.
What PlainSec published about CVE-2014-2321
PlainSec has not published a story about this CVE.