Vulnerability index

Browse CVEs

21 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Vap2500 Firmware HIGH 7.2
CVE-2024-5196

A vulnerability classified as critical has been found in Arris VAP2500 08.50. This affects an unknown part of the file /tools_command.php. The manipu…

Mitigation only
Fix from $1,950 2024-05-22
Vap2500 Firmware HIGH 7.2
CVE-2024-5195

A vulnerability was found in Arris VAP2500 08.50. It has been rated as critical. Affected by this issue is some unknown functionality of the file /di…

Mitigation only
Fix from $1,950 2024-05-22
Vap2500 Firmware HIGH 7.2
CVE-2024-5194

A vulnerability was found in Arris VAP2500 08.50. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the…

Mitigation only
Fix from $1,950 2024-05-22
Dg860a Firmware HIGH 8.8
CVE-2023-40038

Arris DG860A and DG1670A devices have predictable default WPA2 PSKs that could lead to unauthorized remote access. (They use the first 6 characters o…

Mitigation only
Fix from $1,950 2023-12-27
Tg852g Firmware CRITICAL 9.8
CVE-2023-40039

An issue was discovered on ARRIS TG852G, TG862G, and TG1672G devices. A remote attacker (in proximity to a Wi-Fi network) can derive the default WPA2…

Mitigation only
Fix from $2,300 2023-09-11
Nvg443b Firmware MEDIUM 6.1
CVE-2022-45028

A cross-site scripting (XSS) vulnerability in Arris NVG443B 9.3.0h3d36 allows attackers to execute arbitrary web scripts or HTML via a crafted POST r…

No fix yet
Fix from $1,600 2022-12-13
Sbr Ac1900p Firmware CRITICAL 9.8
CVE-2022-26990

Arris routers SBR-AC1900P 1.0.7-B05, SBR-AC3200P 1.0.7-B05 and SBR-AC1200P 1.0.5-B05 were discovered to contain a command injection vulnerability in …

No fix yet
Fix from $2,300 2022-03-15
Sbr Ac1900p Firmware CRITICAL 9.8
CVE-2022-26991

Arris routers SBR-AC1900P 1.0.7-B05, SBR-AC3200P 1.0.7-B05 and SBR-AC1200P 1.0.5-B05 were discovered to contain a command injection vulnerability in …

No fix yet
Fix from $2,300 2022-03-15
Sbr Ac1900p Firmware CRITICAL 9.8
CVE-2022-26992

Arris routers SBR-AC1900P 1.0.7-B05, SBR-AC3200P 1.0.7-B05 and SBR-AC1200P 1.0.5-B05 were discovered to contain a command injection vulnerability in …

No fix yet
Fix from $2,300 2022-03-15
Sbr Ac1900p Firmware CRITICAL 9.8
CVE-2022-26993

Arris routers SBR-AC1900P 1.0.7-B05, SBR-AC3200P 1.0.7-B05 and SBR-AC1200P 1.0.5-B05 were discovered to contain a command injection vulnerability in …

No fix yet
Fix from $2,300 2022-03-15
Sbr Ac1900p Firmware CRITICAL 9.8
CVE-2022-26994

Arris routers SBR-AC1900P 1.0.7-B05, SBR-AC3200P 1.0.7-B05 and SBR-AC1200P 1.0.5-B05 were discovered to contain a command injection vulnerability in …

No fix yet
Fix from $2,300 2022-03-15
Ruckus Zoneflex R500 Firmware HIGH 7.2
CVE-2020-8438

Ruckus ZoneFlex R500 104.0.0.0.1347 devices allow an authenticated attacker to execute arbitrary OS commands via the hidden /forms/nslookupHandler fo…

No fix yet
Fix from $1,950 2020-01-29
Na Model 862 Gw Mono Firmware MEDIUM 6.8
CVE-2015-7291

Cross-site request forgery (CSRF) vulnerability in adv_pwd_cgi in the web management interface on Arris DG860A, TG862A, and TG862G devices with firmw…

Mitigation only
Fix from $1,600 2015-11-21
Na Model 862 Gw Mono Firmware HIGH 9.3
CVE-2015-7289

Arris DG860A, TG862A, and TG862G devices with firmware TS0703128_100611 through TS0705125D_031115 have a hardcoded administrator password derived fro…

Mitigation only
Fix from $1,950 2015-11-21
Touchstone Tg862g\/ct Firmware HIGH 10.0
CVE-2014-9406

ARRIS Touchstone TG862G/CT Telephony Gateway with firmware 7.6.59S.CT and earlier has a default password of password for the admin account, which mak…

Mitigation only
Fix from $1,950 2014-12-18
Touchstone Tg862g\/ct Firmware MEDIUM 6.8
CVE-2014-5437

Multiple cross-site request forgery (CSRF) vulnerabilities in ARRIS Touchstone TG862G/CT Telephony Gateway with firmware 7.6.59S.CT and earlier allow…

Fix: after 7.6.59s.ct
Fix from $1,600 2014-12-17
Vap2500 Firmware HIGH 7.8
CVE-2014-8425

The management portal in ARRIS VAP2500 before FW08.41 allows remote attackers to obtain credentials by reading the configuration files.

Fix: after 08.41
Fix from $1,950 2014-11-28
Vap2500 Firmware HIGH 7.8
CVE-2014-8424EPSS 60%

ARRIS VAP2500 before FW08.41 does not properly validate passwords, which allows remote attackers to bypass authentication.

Fix: after 08.41
Fix from $1,950 2014-11-28
Vap2500 Firmware HIGH 10.0
CVE-2014-8423EPSS 62%

Unspecified vulnerability in the management portal in ARRIS VAP2500 before FW08.41 allows remote attackers to execute arbitrary commands via unknown …

Fix: after 08.41
Fix from $1,950 2014-11-28
Touchstone Dg950a Software MEDIUM 5.0
CVE-2014-4863EPSS 16%

The Arris Touchstone DG950A cable modem with software 7.10.131 has an SNMP community of public, which allows remote attackers to obtain sensitive pas…

No fix yet
Fix from $1,600 2014-09-05
Cadant C3 Cmts HIGH 7.8
CVE-2007-2796

Arris Cadant C3 CMTS allows remote attackers to cause a denial of service (service termination) via a malformed IP packet with an invalid IP option.

Mitigation only
Fix from $1,950 2007-06-12