CVE-2015-2904: Actiontec NCS01 Firmware

High severity, CVSS 8.3. EPSS: 0.9% chance of exploitation in the next 30 days.

Actiontec GT784WN modems with firmware before NCS01-1.0.13 have hardcoded credentials, which makes it easier for remote attackers to obtain root access by connecting to the web administration interface.

Affected products

  • Actiontec NCS01 Firmware: up to and including 1.0.12

Published 2015-08-23. Last modified 2026-06-17.