Vulnerability index

Browse CVEs

46 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2021-33216EPSS 14% An issue was discovered in CommScope Ruckus IoT Controller 1.7.1.0 and earlier. An Undocumented Backdoor exists, allowing shell access via a develope… Ruckus Iot Controller after 1.7.1.0 Fix from $2,3002021-07-07 CRITICAL 9.8 CVE-2020-26879EPSS 45% Ruckus vRioT through 1.5.1.0.21 has an API backdoor that is hardcoded into validate_token.py. An unauthenticated attacker can interact with the servi… Ruckus Vriot after 1.5.1.0.21 Fix from $2,3002020-10-26 HIGH 8.8 CVE-2020-26878EPSS 12% Ruckus through 1.5.1.0.21 is affected by remote command injection. An authenticated user can submit a query to the API (/service/v1/createUser endpoi… Ruckus Vriot after 1.5.1.0.21 Fix from $1,9502020-10-26 HIGH 8.8 CVE-2020-8830 CSRF in login.asp on Ruckus devices allows an attacker to access the panel, and use SSRF to perform scraping or other analysis via the SUBCA-1 field … Ruckus Zoneflex R500 Firmware No fix yet Fix from $1,9502020-05-05 HIGH 8.1 CVE-2020-7983 A CSRF issue in login.asp on Ruckus R500 3.4.2.0.384 devices allows remote attackers to access the panel or conduct SSRF attacks. Ruckus Zoneflex R500 Firmware No fix yet Fix from $1,9502020-05-05 MEDIUM 6.1 CVE-2020-8033 Ruckus R500 3.4.2.0.384 devices allow XSS via the index.asp Device Name field. Ruckus Zoneflex R500 Firmware No fix yet Fix from $1,6002020-05-05 HIGH 7.5 CVE-2020-9476 ARRIS TG1692A devices allow remote attackers to discover the administrator login name and password by reading the /login page and performing base64 d… Arris Tg1692a Firmware Mitigation only Fix from $1,9502020-03-04 CRITICAL 9.8 CVE-2019-15805 CommScope ARRIS TR4400 devices with firmware through A1.00.004-180301 are vulnerable to an authentication bypass to the administrative interface beca… Tr4400 Firmware Mitigation only Fix from $2,3002019-08-29 CRITICAL 9.8 CVE-2019-15806 CommScope ARRIS TR4400 devices with firmware through A1.00.004-180301 are vulnerable to an authentication bypass to the administrative interface beca… Tr4400 Firmware Mitigation only Fix from $2,3002019-08-29 CRITICAL 9.8 CVE-2018-20383 ARRIS DG950A 7.10.145 and DG950S 7.10.145.EURO devices allow remote attackers to discover credentials via iso.3.6.1.4.1.4491.2.4.1.1.6.1.1.0 and iso.… Arris Dg950a Firmware No fix yet Fix from $2,3002018-12-23 CRITICAL 9.8 CVE-2018-20386 ARRIS SBG6580-2 D30GW-SEAEAGLE-1.5.2.5-GA-00-NOSH devices allow remote attackers to discover credentials via iso.3.6.1.4.1.4491.2.4.1.1.6.1.1.0 and i… Arris Sbg6580 2 Firmware No fix yet Fix from $2,3002018-12-23 HIGH 7.5 CVE-2018-17555 The web component on ARRIS TG2492LG-NA 061213 devices allows remote attackers to obtain sensitive information via the /snmpGet oids parameter. Arris Tg2492lg Na Firmware No fix yet Fix from $1,9502018-09-26 HIGH 8.0 CVE-2018-10990 On Arris Touchstone Telephony Gateway TG1682G 9.1.103J6 devices, a logout action does not immediately destroy all state on the device related to the … Arris Tg1682g Firmware Mitigation only Fix from $1,9502018-05-14 MEDIUM 6.6 CVE-2018-10989 Arris Touchstone Telephony Gateway TG1682G 9.1.103J6 devices are distributed by some ISPs with a default password of "password" for the admin account… Arris Tg1682g Firmware Mitigation only Fix from $1,6002018-05-14 MEDIUM 6.1 CVE-2017-16836 Arris TG1682G devices with Comcast TG1682_2.0s7_PRODse 10.0.59.SIP.PC20.CT software allow Unauthenticated Stored XSS via the actionHandler/ajax_manag… Arris Tg1682g Firmware No fix yet Fix from $1,6002017-11-16 MEDIUM 6.8 CVE-2014-3778 Multiple cross-site request forgery (CSRF) vulnerabilities in goform/RgDdns in ARRIS (formerly Motorola) SBG901 SURFboard Wireless Cable Modem allow … Arris Sbg901 No fix yet Fix from $1,6002014-06-19