Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
CRITICAL 9.8
CVE-2021-33216EPSS 14%
An issue was discovered in CommScope Ruckus IoT Controller 1.7.1.0 and earlier. An Undocumented Backdoor exists, allowing shell access via a develope…
Ruckus Iot Controller
after 1.7.1.0
CRITICAL 9.8
CVE-2020-26879EPSS 45%
Ruckus vRioT through 1.5.1.0.21 has an API backdoor that is hardcoded into validate_token.py. An unauthenticated attacker can interact with the servi…
Ruckus Vriot
after 1.5.1.0.21
HIGH 8.8
CVE-2020-26878EPSS 12%
Ruckus through 1.5.1.0.21 is affected by remote command injection. An authenticated user can submit a query to the API (/service/v1/createUser endpoi…
Ruckus Vriot
after 1.5.1.0.21
HIGH 8.8
CVE-2020-8830
CSRF in login.asp on Ruckus devices allows an attacker to access the panel, and use SSRF to perform scraping or other analysis via the SUBCA-1 field …
Ruckus Zoneflex R500 Firmware
No fix yet
HIGH 8.1
CVE-2020-7983
A CSRF issue in login.asp on Ruckus R500 3.4.2.0.384 devices allows remote attackers to access the panel or conduct SSRF attacks.
Ruckus Zoneflex R500 Firmware
No fix yet
MEDIUM 6.1
CVE-2020-8033
Ruckus R500 3.4.2.0.384 devices allow XSS via the index.asp Device Name field.
Ruckus Zoneflex R500 Firmware
No fix yet
HIGH 7.5
CVE-2020-9476
ARRIS TG1692A devices allow remote attackers to discover the administrator login name and password by reading the /login page and performing base64 d…
Arris Tg1692a Firmware
Mitigation only
CRITICAL 9.8
CVE-2019-15805
CommScope ARRIS TR4400 devices with firmware through A1.00.004-180301 are vulnerable to an authentication bypass to the administrative interface beca…
Tr4400 Firmware
Mitigation only
CRITICAL 9.8
CVE-2019-15806
CommScope ARRIS TR4400 devices with firmware through A1.00.004-180301 are vulnerable to an authentication bypass to the administrative interface beca…
Tr4400 Firmware
Mitigation only
CRITICAL 9.8
CVE-2018-20383
ARRIS DG950A 7.10.145 and DG950S 7.10.145.EURO devices allow remote attackers to discover credentials via iso.3.6.1.4.1.4491.2.4.1.1.6.1.1.0 and iso.…
Arris Dg950a Firmware
No fix yet
CRITICAL 9.8
CVE-2018-20386
ARRIS SBG6580-2 D30GW-SEAEAGLE-1.5.2.5-GA-00-NOSH devices allow remote attackers to discover credentials via iso.3.6.1.4.1.4491.2.4.1.1.6.1.1.0 and i…
Arris Sbg6580 2 Firmware
No fix yet
HIGH 7.5
CVE-2018-17555
The web component on ARRIS TG2492LG-NA 061213 devices allows remote attackers to obtain sensitive information via the /snmpGet oids parameter.
Arris Tg2492lg Na Firmware
No fix yet
HIGH 8.0
CVE-2018-10990
On Arris Touchstone Telephony Gateway TG1682G 9.1.103J6 devices, a logout action does not immediately destroy all state on the device related to the …
Arris Tg1682g Firmware
Mitigation only
MEDIUM 6.6
CVE-2018-10989
Arris Touchstone Telephony Gateway TG1682G 9.1.103J6 devices are distributed by some ISPs with a default password of "password" for the admin account…
Arris Tg1682g Firmware
Mitigation only
MEDIUM 6.1
CVE-2017-16836
Arris TG1682G devices with Comcast TG1682_2.0s7_PRODse 10.0.59.SIP.PC20.CT software allow Unauthenticated Stored XSS via the actionHandler/ajax_manag…
Arris Tg1682g Firmware
No fix yet
MEDIUM 6.8
CVE-2014-3778
Multiple cross-site request forgery (CSRF) vulnerabilities in goform/RgDdns in ARRIS (formerly Motorola) SBG901 SURFboard Wireless Cable Modem allow …
Arris Sbg901
No fix yet