CVE-2016-10401: Zyxel PK5001Z Firmware

High severity, CVSS 8.8. EPSS: 12.3% chance of exploitation in the next 30 days.

ZyXEL PK5001Z devices have zyad5001 as the su password, which makes it easier for remote attackers to obtain root access if a non-root account password is known (or a non-root default account exists within an ISP's deployment of these devices).

Affected products

  • Zyxel PK5001Z Firmware: affected versions not specified

Published 2017-07-25. Last modified 2026-06-17.