CVE-2017-7964

CRITICAL

Zyxel WRE6505 devices have a default TELNET password of 1234 for the root and admin accounts, which makes it easier for remote attackers to conduct DNS hijacking attacks by reconfiguring the built-...

Affects 1 product across 1 vendor.

BCS7.72
CVSS 3.010.0
EPSS2.5%
Percentile84th
PatchUnknown
CVSS Vector — Plain English Remotely exploitable over the network, low complexity, no authentication required, no user interaction needed, can impact systems beyond the vulnerable component, full confidentiality impact, full integrity impact, full availability impact.
CWE Weakness Definitions
CWE-1188: CWE-1188
Related Attack Patterns (CAPEC)
CAPEC-665 Exploitation of Thunderbolt Protection Flaws
via CWE-1188

Mapping is CWE-to-CAPEC per MITRE CAPEC 3.9.

◆ AI Analysis — automated analysis, not human-reviewed

This vulnerability was disclosed in 2017. A critical vulnerability affects Zyxel systems (CVE-2017-7964). No public exploit code is currently available. Isolate affected systems if patching is not feasible.

BSID: BS-2017-GLOBAL-247511-C • Model: rule-based-v1 • Confidence: MEDIUM

Is this CVE in your environment?

BreachSpider monitors your ICS/OT environment for vulnerabilities like this one. No agents or network access required. Free to start.

Check My Environment →
Frequently Asked Questions
What is CVE-2017-7964?
This vulnerability was disclosed in 2017. A critical vulnerability affects Zyxel systems (CVE-2017-7964). No public exploit code is currently available. Isolate affected systems if patching is not feasible.
What is the CVSS score for CVE-2017-7964?
CVE-2017-7964 has CVSS 10.0 (Critical). Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H. EPSS: 2.5%.
Is CVE-2017-7964 actively exploited?
No confirmed active exploitation of CVE-2017-7964 as of 2026-09-25.
How do I remediate CVE-2017-7964?
Priority: MEDIUM.
What systems are affected by CVE-2017-7964?
CVE-2017-7964 affects: Zyxel.
Vulnerability Details
CVE IDCVE-2017-7964
BSIDBS-2017-GLOBAL-247511-C BreachSpider Global ID
CVSS VectorCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Published2017-04-19
Last Modified2026-06-17
ICS Relevance55%
Weakness (CWE)
Domains
NETWORK-INFRA
SourceNVD
Official Description

Zyxel WRE6505 devices have a default TELNET password of 1234 for the root and admin accounts, which makes it easier for remote attackers to conduct DNS hijacking attacks by reconfiguring the built-in dnshijacker process.

Source: NIST NVD / MITRE CVE Database

Attack Vector Analysis — CITED Relevance

Vulnerability details: Zyxel WRE6505 devices have a default TELNET password of 1234 for the root and admin accounts, which makes it easier for remote attackers to conduct DNS hijacking attacks by reconfiguring the built-in dnshijacker process. CVSS vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H.

Exploitation Likelihood: LOW

Affected Products
VendorProductFixed Version
Zyxel Wre6505 Firmware —
Remediation

No patch URL on record. Monitor vendor security advisories directly.

Threat Intelligence
● Threat Intelligence Validated: September 2026 | Threat Age: 3448 Days
CISA KEVNot in KEV catalog
Public ExploitNot confirmed
PoC CodeNot confirmed
AI Enrichment Record — provenance & audit hash
Modelrule-based-v1
ConfidenceMEDIUM
Enriched At2026-05-24
SHA-512 Audit Hash4df250825a2b101f8e411232e82c3619304427d02d59c5d3f89bf9f33d7749d9c854f33909961692337f9e26faf9af22310834138c8aa2be1aefe679fe148b91
Related CVEs affecting Zyxel
CVE-2008-1256 10.0 The ZyXEL P-660HW series router has "admin" as its default password, which al... CVE-2008-1255 10.0 The ZyXEL P-660HW series router maintains authentication state by IP address,... CVE-2015-6016 9.8 ZyXEL P-660HW-T1 2 devices with ZyNOS firmware 3.40(AXH.0), PMG5318-B20A devi... CVE-2008-1160 9.8 ZyXEL ZyWALL 1050 has a hard-coded password for the Quagga and Zebra processe... CVE-2015-6018 9.8 The diagnostic-ping implementation on ZyXEL PMG5318-B20A devices with firmwar...
View all Zyxel CVEs →

Critical Severity - Know Your Exposure

A CVSS 10.0 vulnerability in your ICS environment cannot wait. BreachSpider maps critical CVEs to your specific assets and tells you what to fix first.

Create a free account →