Vulnerability index

Browse CVEs

46 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Ruckus Iot Controller CRITICAL 9.8
CVE-2021-33216EPSS 14%

An issue was discovered in CommScope Ruckus IoT Controller 1.7.1.0 and earlier. An Undocumented Backdoor exists, allowing shell access via a develope…

Fix: after 1.7.1.0
Fix from $2,300 2021-07-07
Ruckus Vriot CRITICAL 9.8
CVE-2020-26879EPSS 45%

Ruckus vRioT through 1.5.1.0.21 has an API backdoor that is hardcoded into validate_token.py. An unauthenticated attacker can interact with the servi…

Fix: after 1.5.1.0.21
Fix from $2,300 2020-10-26
Ruckus Vriot HIGH 8.8
CVE-2020-26878EPSS 12%

Ruckus through 1.5.1.0.21 is affected by remote command injection. An authenticated user can submit a query to the API (/service/v1/createUser endpoi…

Fix: after 1.5.1.0.21
Fix from $1,950 2020-10-26
Ruckus Zoneflex R500 Firmware HIGH 8.8
CVE-2020-8830

CSRF in login.asp on Ruckus devices allows an attacker to access the panel, and use SSRF to perform scraping or other analysis via the SUBCA-1 field …

No fix yet
Fix from $1,950 2020-05-05
Ruckus Zoneflex R500 Firmware HIGH 8.1
CVE-2020-7983

A CSRF issue in login.asp on Ruckus R500 3.4.2.0.384 devices allows remote attackers to access the panel or conduct SSRF attacks.

No fix yet
Fix from $1,950 2020-05-05
Ruckus Zoneflex R500 Firmware MEDIUM 6.1
CVE-2020-8033

Ruckus R500 3.4.2.0.384 devices allow XSS via the index.asp Device Name field.

No fix yet
Fix from $1,600 2020-05-05
Arris Tg1692a Firmware HIGH 7.5
CVE-2020-9476

ARRIS TG1692A devices allow remote attackers to discover the administrator login name and password by reading the /login page and performing base64 d…

Mitigation only
Fix from $1,950 2020-03-04
Tr4400 Firmware CRITICAL 9.8
CVE-2019-15805

CommScope ARRIS TR4400 devices with firmware through A1.00.004-180301 are vulnerable to an authentication bypass to the administrative interface beca…

Mitigation only
Fix from $2,300 2019-08-29
Tr4400 Firmware CRITICAL 9.8
CVE-2019-15806

CommScope ARRIS TR4400 devices with firmware through A1.00.004-180301 are vulnerable to an authentication bypass to the administrative interface beca…

Mitigation only
Fix from $2,300 2019-08-29
Arris Dg950a Firmware CRITICAL 9.8
CVE-2018-20383

ARRIS DG950A 7.10.145 and DG950S 7.10.145.EURO devices allow remote attackers to discover credentials via iso.3.6.1.4.1.4491.2.4.1.1.6.1.1.0 and iso.…

No fix yet
Fix from $2,300 2018-12-23
Arris Sbg6580 2 Firmware CRITICAL 9.8
CVE-2018-20386

ARRIS SBG6580-2 D30GW-SEAEAGLE-1.5.2.5-GA-00-NOSH devices allow remote attackers to discover credentials via iso.3.6.1.4.1.4491.2.4.1.1.6.1.1.0 and i…

No fix yet
Fix from $2,300 2018-12-23
Arris Tg2492lg Na Firmware HIGH 7.5
CVE-2018-17555

The web component on ARRIS TG2492LG-NA 061213 devices allows remote attackers to obtain sensitive information via the /snmpGet oids parameter.

No fix yet
Fix from $1,950 2018-09-26
Arris Tg1682g Firmware HIGH 8.0
CVE-2018-10990

On Arris Touchstone Telephony Gateway TG1682G 9.1.103J6 devices, a logout action does not immediately destroy all state on the device related to the …

Mitigation only
Fix from $1,950 2018-05-14
Arris Tg1682g Firmware MEDIUM 6.6
CVE-2018-10989

Arris Touchstone Telephony Gateway TG1682G 9.1.103J6 devices are distributed by some ISPs with a default password of "password" for the admin account…

Mitigation only
Fix from $1,600 2018-05-14
Arris Tg1682g Firmware MEDIUM 6.1
CVE-2017-16836

Arris TG1682G devices with Comcast TG1682_2.0s7_PRODse 10.0.59.SIP.PC20.CT software allow Unauthenticated Stored XSS via the actionHandler/ajax_manag…

No fix yet
Fix from $1,600 2017-11-16
Arris Sbg901 MEDIUM 6.8
CVE-2014-3778

Multiple cross-site request forgery (CSRF) vulnerabilities in goform/RgDdns in ARRIS (formerly Motorola) SBG901 SURFboard Wireless Cable Modem allow …

No fix yet
Fix from $1,600 2014-06-19