ID

VAR-201005-0138


CVE

CVE-2010-2082


TITLE

Cisco Scientific Atlanta WebSTAR DPC2100R2 Cable modem Web Privileged vulnerability in interface

Trust: 0.8

sources: JVNDB: JVNDB-2010-004112

DESCRIPTION

The web interface on the Cisco Scientific Atlanta WebSTAR DPC2100R2 cable modem with firmware 2.0.2r1256-060303 has a default administrative password (aka SAPassword) of W2402, which makes it easier for remote attackers to obtain privileged access. The Cisco DPC2100 is a small cable modem

Trust: 1.71

sources: NVD: CVE-2010-2082 // JVNDB: JVNDB-2010-004112 // VULHUB: VHN-44687

AFFECTED PRODUCTS

vendor:ciscomodel:scientific atlanta webstar dpc2100r2scope:eqversion:2.0.2r1256-060303

Trust: 1.6

vendor:ciscomodel:scientific atlanta webstar dpc2100r2scope:eqversion:firmware 2.0.2r1256-060303

Trust: 0.8

sources: JVNDB: JVNDB-2010-004112 // CNNVD: CNNVD-201005-372 // NVD: CVE-2010-2082

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2010-2082
value: MEDIUM

Trust: 1.0

NVD: CVE-2010-2082
value: MEDIUM

Trust: 0.8

CNNVD: CNNVD-201005-372
value: MEDIUM

Trust: 0.6

VULHUB: VHN-44687
value: MEDIUM

Trust: 0.1

nvd@nist.gov: CVE-2010-2082
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:P/I:N/A:N
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: NONE
availabilityImpact: NONE
exploitabilityScore: 10.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

VULHUB: VHN-44687
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:P/I:N/A:N
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: NONE
availabilityImpact: NONE
exploitabilityScore: 10.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

sources: VULHUB: VHN-44687 // JVNDB: JVNDB-2010-004112 // CNNVD: CNNVD-201005-372 // NVD: CVE-2010-2082

PROBLEMTYPE DATA

problemtype:CWE-255

Trust: 1.9

sources: VULHUB: VHN-44687 // JVNDB: JVNDB-2010-004112 // NVD: CVE-2010-2082

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-201005-372

TYPE

trust management

Trust: 0.6

sources: CNNVD: CNNVD-201005-372

CONFIGURATIONS

sources: JVNDB: JVNDB-2010-004112

PATCH

title:Top Pageurl:http://www.cisco.com/

Trust: 0.8

sources: JVNDB: JVNDB-2010-004112

EXTERNAL IDS

db:NVDid:CVE-2010-2082

Trust: 2.5

db:JVNDBid:JVNDB-2010-004112

Trust: 0.8

db:CNNVDid:CNNVD-201005-372

Trust: 0.7

db:FULLDISCid:20100524 SCIENTIFIC ATLANTA DPC2100 WEBSTAR CABLE MODEM VULNERABILITIES

Trust: 0.6

db:VULHUBid:VHN-44687

Trust: 0.1

sources: VULHUB: VHN-44687 // JVNDB: JVNDB-2010-004112 // CNNVD: CNNVD-201005-372 // NVD: CVE-2010-2082

REFERENCES

url:http://archives.neohapsis.com/archives/fulldisclosure/2010-05/0322.html

Trust: 1.7

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-2082

Trust: 0.8

url:http://web.nvd.nist.gov/view/vuln/detail?vulnid=cve-2010-2082

Trust: 0.8

sources: VULHUB: VHN-44687 // JVNDB: JVNDB-2010-004112 // CNNVD: CNNVD-201005-372 // NVD: CVE-2010-2082

CREDITS

Dan Rosenberg

Trust: 0.6

sources: CNNVD: CNNVD-201005-372

SOURCES

db:VULHUBid:VHN-44687
db:JVNDBid:JVNDB-2010-004112
db:CNNVDid:CNNVD-201005-372
db:NVDid:CVE-2010-2082

LAST UPDATE DATE

2025-04-11T23:16:50.354000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-44687date:2010-05-27T00:00:00
db:JVNDBid:JVNDB-2010-004112date:2012-06-26T00:00:00
db:CNNVDid:CNNVD-201005-372date:2010-05-28T00:00:00
db:NVDid:CVE-2010-2082date:2025-04-11T00:51:21.963

SOURCES RELEASE DATE

db:VULHUBid:VHN-44687date:2010-05-26T00:00:00
db:JVNDBid:JVNDB-2010-004112date:2012-06-26T00:00:00
db:CNNVDid:CNNVD-201005-372date:2010-05-28T00:00:00
db:NVDid:CVE-2010-2082date:2010-05-26T19:30:01.517