CVE-2017-8861: Cohuhd 3960hd Firmware

Critical severity, CVSS 9.8. EPSS: 1.5% chance of exploitation in the next 30 days.

Missing authentication for the remote configuration port 1236/tcp on the Cohu 3960HD allows an attacker to change configuration parameters such as IP address and username/password via specially crafted XML SOAP packets.

Affected products

  • Cohuhd 3960hd Firmware: affected versions not specified

Published 2017-11-22. Last modified 2026-06-17.