Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
CRITICAL 9.8
CVE-2024-23618
An arbitrary code execution vulnerability exists in Arris SURFboard SGB6950AC2 devices. An unauthenticated attacker can exploit this vulnerability to…
Arris Surfboard Sbg6950ac2 Firmware
Mitigation only
MEDIUM 6.1
CVE-2023-27572
An issue was discovered in CommScope Arris DG3450 Cable Gateway AR01.02.056.18_041520_711.NCS.10. A reflected XSS vulnerability was discovered in the…
Dg3450 Firmware
No fix yet
MEDIUM 5.3
CVE-2023-27571
An issue was discovered in DG3450 Cable Gateway AR01.02.056.18_041520_711.NCS.10. The troubleshooting_logs_download.php log file download functionali…
Dg3450 Firmware
No fix yet
CRITICAL 9.8
CVE-2022-26996
Arris TR3300 v1.0.13 was discovered to contain a command injection vulnerability in the pppoe function via the pppoe_username, pppoe_passwd, and pppo…
Arris Tr3300 Firmware
No fix yet
CRITICAL 9.8
CVE-2022-26997
Arris TR3300 v1.0.13 was discovered to contain a command injection vulnerability in the upnp function via the upnp_ttl parameter. This vulnerability …
Arris Tr3300 Firmware
No fix yet
CRITICAL 9.8
CVE-2022-26998
Arris TR3300 v1.0.13 was discovered to contain a command injection vulnerability in the wps setting function via the wps_enrolee_pin parameter. This …
Arris Tr3300 Firmware
No fix yet
CRITICAL 9.8
CVE-2022-26999
Arris TR3300 v1.0.13 was discovered to contain a command injection vulnerability in the static ip settings function via the wan_ip_stat, wan_mask_sta…
Arris Tr3300 Firmware
No fix yet
CRITICAL 9.8
CVE-2022-27000
Arris TR3300 v1.0.13 was discovered to contain a command injection vulnerability in the time and time zone function via the h_primary_ntp_server, h_b…
Arris Tr3300 Firmware
No fix yet
CRITICAL 9.8
CVE-2022-27001
Arris TR3300 v1.0.13 were discovered to contain a command injection vulnerability in the dhcp function via the hostname parameter. This vulnerability…
Arris Tr3300 Firmware
No fix yet
CRITICAL 9.8
CVE-2022-27002EPSS 5%
Arris TR3300 v1.0.13 were discovered to contain a command injection vulnerability in the ddns function via the ddns_name, ddns_pwd, h_ddns、ddns_host…
Arris Tr3300 Firmware
No fix yet
CRITICAL 9.8
CVE-2022-26995
Arris TR3300 v1.0.13 was discovered to contain a command injection vulnerability in the pptp (wan_pptp.html) function via the pptp_fix_ip, pptp_fix_m…
Arris Tr3300 Firmware
No fix yet
HIGH 8.8
CVE-2021-41552
CommScope SURFboard SBG6950AC2 9.1.103AA23 devices allow Command Injection.
Arris Surfboard Sbg6950ac2 Firmware
Mitigation only
HIGH 7.1
CVE-2021-20119
The password change utility for the Arris SurfBoard SB8200 can have safety measures bypassed that allow any logged-in user to change the administrato…
Arris Surfboard Sb8200 Firmware
No fix yet
HIGH 8.8
CVE-2021-20120
The administration web interface for the Arris Surfboard SB8200 lacks any protections against cross-site request forgery attacks. This means that an …
Arris Surfboard Sb8200 Firmware
No fix yet
HIGH 8.8
CVE-2020-8830
CSRF in login.asp on Ruckus devices allows an attacker to access the panel, and use SSRF to perform scraping or other analysis via the SUBCA-1 field …
Ruckus Zoneflex R500 Firmware
No fix yet
HIGH 8.1
CVE-2020-7983
A CSRF issue in login.asp on Ruckus R500 3.4.2.0.384 devices allows remote attackers to access the panel or conduct SSRF attacks.
Ruckus Zoneflex R500 Firmware
No fix yet
MEDIUM 6.1
CVE-2020-8033
Ruckus R500 3.4.2.0.384 devices allow XSS via the index.asp Device Name field.
Ruckus Zoneflex R500 Firmware
No fix yet
HIGH 7.5
CVE-2020-9476
ARRIS TG1692A devices allow remote attackers to discover the administrator login name and password by reading the /login page and performing base64 d…
Arris Tg1692a Firmware
Mitigation only
CRITICAL 9.8
CVE-2019-15805
CommScope ARRIS TR4400 devices with firmware through A1.00.004-180301 are vulnerable to an authentication bypass to the administrative interface beca…
Tr4400 Firmware
Mitigation only
CRITICAL 9.8
CVE-2019-15806
CommScope ARRIS TR4400 devices with firmware through A1.00.004-180301 are vulnerable to an authentication bypass to the administrative interface beca…
Tr4400 Firmware
Mitigation only
CRITICAL 9.8
CVE-2018-20383
ARRIS DG950A 7.10.145 and DG950S 7.10.145.EURO devices allow remote attackers to discover credentials via iso.3.6.1.4.1.4491.2.4.1.1.6.1.1.0 and iso.…
Arris Dg950a Firmware
No fix yet
CRITICAL 9.8
CVE-2018-20386
ARRIS SBG6580-2 D30GW-SEAEAGLE-1.5.2.5-GA-00-NOSH devices allow remote attackers to discover credentials via iso.3.6.1.4.1.4491.2.4.1.1.6.1.1.0 and i…
Arris Sbg6580 2 Firmware
No fix yet
HIGH 7.5
CVE-2018-17555
The web component on ARRIS TG2492LG-NA 061213 devices allows remote attackers to obtain sensitive information via the /snmpGet oids parameter.
Arris Tg2492lg Na Firmware
No fix yet
HIGH 8.0
CVE-2018-10990
On Arris Touchstone Telephony Gateway TG1682G 9.1.103J6 devices, a logout action does not immediately destroy all state on the device related to the …
Arris Tg1682g Firmware
Mitigation only
MEDIUM 6.6
CVE-2018-10989
Arris Touchstone Telephony Gateway TG1682G 9.1.103J6 devices are distributed by some ISPs with a default password of "password" for the admin account…
Arris Tg1682g Firmware
Mitigation only
MEDIUM 6.1
CVE-2017-16836
Arris TG1682G devices with Comcast TG1682_2.0s7_PRODse 10.0.59.SIP.PC20.CT software allow Unauthenticated Stored XSS via the actionHandler/ajax_manag…
Arris Tg1682g Firmware
No fix yet
MEDIUM 6.8
CVE-2014-3778
Multiple cross-site request forgery (CSRF) vulnerabilities in goform/RgDdns in ARRIS (formerly Motorola) SBG901 SURFboard Wireless Cable Modem allow …
Arris Sbg901
No fix yet