Перейти к содержимому
Noroxi

Записи Arris

28 опубликованных записей вендора arris.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
3 · 10,7 %
Pre-auth RCE
7
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

28 записей
  • CVE-2014-8423
    59В плане

    Unspecified vulnerability in the management portal in ARRIS VAP2500 before FW08.41 allows remote attackers to execute arbitrary commands via

    КритическаяCVSS 10,0Готовый эксплойтEPSS 62 %

    arris · vap2500 firmware28 нояб. 2014 г.

  • CVE-2014-8424
    49В плане

    ARRIS VAP2500 before FW08.41 does not properly validate passwords, which allows remote attackers to bypass authentication.

    ВысокаяCVSS 7,8Готовый эксплойтEPSS 60 %

    arris · vap2500 firmware28 нояб. 2014 г.

  • CVE-2014-9406
    41В плане

    ARRIS Touchstone TG862G/CT Telephony Gateway with firmware 7.6.59S.CT and earlier has a default password of password for the admin account,

    КритическаяCVSS 10,0Эксплойта нетEPSS 2 %

    arris · touchstone tg862g\/ct firmware18 дек. 2014 г.

  • CVE-2022-26994
    40В плане

    Arris routers SBR-AC1900P 1.0.7-B05, SBR-AC3200P 1.0.7-B05 and SBR-AC1200P 1.0.5-B05 were discovered to contain a command injection vulnerab

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    arris · sbr-ac1900p firmware15 мар. 2022 г.

  • CVE-2022-26992
    40В плане

    Arris routers SBR-AC1900P 1.0.7-B05, SBR-AC3200P 1.0.7-B05 and SBR-AC1200P 1.0.5-B05 were discovered to contain a command injection vulnerab

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    arris · sbr-ac1900p firmware15 мар. 2022 г.

  • CVE-2022-26990
    40В плане

    Arris routers SBR-AC1900P 1.0.7-B05, SBR-AC3200P 1.0.7-B05 and SBR-AC1200P 1.0.5-B05 were discovered to contain a command injection vulnerab

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    arris · sbr-ac1900p firmware15 мар. 2022 г.

  • CVE-2022-26991
    40В плане

    Arris routers SBR-AC1900P 1.0.7-B05, SBR-AC3200P 1.0.7-B05 and SBR-AC1200P 1.0.5-B05 were discovered to contain a command injection vulnerab

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    arris · sbr-ac1900p firmware15 мар. 2022 г.

  • CVE-2022-26993
    40В плане

    Arris routers SBR-AC1900P 1.0.7-B05, SBR-AC3200P 1.0.7-B05 and SBR-AC1200P 1.0.5-B05 were discovered to contain a command injection vulnerab

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    arris · sbr-ac1900p firmware15 мар. 2022 г.

  • CVE-2018-20383
    40В плане

    ARRIS DG950A 7.10.145 and DG950S 7.10.145.EURO devices allow remote attackers to discover credentials via iso.3.6.1.4.1.4491.2.4.1.1.6.1.1.0

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    arris · dg950s firmware23 дек. 2018 г.

  • CVE-2023-40039
    39Наблюдать

    An issue was discovered on ARRIS TG852G, TG862G, and TG1672G devices.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    arris · tg852g firmware11 сент. 2023 г.

  • CVE-2015-7289
    38Наблюдать

    Arris DG860A, TG862A, and TG862G devices with firmware TS0703128_100611 through TS0705125D_031115 have a hardcoded administrator password de

    КритическаяCVSS 9,3Эксплойта нетEPSS 2 %

    arris · na model 862 gw mono firmware21 нояб. 2015 г.

  • CVE-2022-31793
    35Наблюдать

    do_request in request.c in muhttpd before 1.1.7 allows remote attackers to read arbitrary files by constructing a URL with a single characte

    ВысокаяCVSS 7,5Proof of conceptEPSS 17 %

    inglorion · muhttpd4 авг. 2022 г.

  • CVE-2017-9490
    35Наблюдать

    The Comcast firmware on Arris TG1682G (eMTA&DOCSIS version 10.0.132.SIP.PC20.CT, software version TG1682_2.2p7s2_PROD_sey) devices allows co

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    arris · tg1682g firmware30 июл. 2017 г.

  • CVE-2024-25729
    35Наблюдать

    Arris SBG6580 devices have predictable default WPA2 security passwords that could lead to unauthorized remote access.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    7 мар. 2024 г.

  • CVE-2023-40038
    35Наблюдать

    Arris DG860A and DG1670A devices have predictable default WPA2 PSKs that could lead to unauthorized remote access.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    arris · dg860a firmware27 дек. 2023 г.

  • CVE-2014-8425
    32Наблюдать

    The management portal in ARRIS VAP2500 before FW08.41 allows remote attackers to obtain credentials by reading the configuration files.

    ВысокаяCVSS 7,8Proof of conceptEPSS 3 %

    arris · vap2500 firmware28 нояб. 2014 г.

  • CVE-2007-2796
    32Наблюдать

    Arris Cadant C3 CMTS allows remote attackers to cause a denial of service (service termination) via a malformed IP packet with an invalid IP

    ВысокаяCVSS 7,8Эксплойта нетEPSS 2 %

    arris · cadant c3 cmts12 июн. 2007 г.

  • CVE-2020-8438
    28Наблюдать

    Ruckus ZoneFlex R500 104.0.0.0.1347 devices allow an authenticated attacker to execute arbitrary OS commands via the hidden /forms/nslookupH

    ВысокаяCVSS 7,2Эксплойта нетEPSS 2 %

    arris · ruckus zoneflex r500 firmware29 янв. 2020 г.

  • CVE-2024-5195
    27Наблюдать

    Arris VAP2500 diag_s.php command injection

    СредняяCVSS 5,1Эксплойта нетEPSS 23 %

    arris · vap2500 firmware22 мая 2024 г.

  • CVE-2024-5196
    27Наблюдать

    Arris VAP2500 tools_command.php command injection

    СредняяCVSS 5,1Эксплойта нетEPSS 23 %

    arris · vap2500 firmware22 мая 2024 г.

  • CVE-2015-7291
    27Наблюдать

    Cross-site request forgery (CSRF) vulnerability in adv_pwd_cgi in the web management interface on Arris DG860A, TG862A, and TG862G devices w

    СредняяCVSS 6,8Эксплойта нетEPSS 1 %

    arris · na model 862 gw mono firmware21 нояб. 2015 г.

  • CVE-2014-5437
    27Наблюдать

    Multiple cross-site request forgery (CSRF) vulnerabilities in ARRIS Touchstone TG862G/CT Telephony Gateway with firmware 7.6.59S.CT and earl

    СредняяCVSS 6,8Эксплойта нетEPSS 1 %

    arris · touchstone tg862g\/ct firmware17 дек. 2014 г.

  • CVE-2014-4863
    25Наблюдать

    The Arris Touchstone DG950A cable modem with software 7.10.131 has an SNMP community of public, which allows remote attackers to obtain sens

    СредняяCVSS 5,0Готовый эксплойтEPSS 16 %

    arris · touchstone dg950a software5 сент. 2014 г.

  • CVE-2022-45028
    24Наблюдать

    A cross-site scripting (XSS) vulnerability in Arris NVG443B 9.3.0h3d36 allows attackers to execute arbitrary web scripts or HTML via a craft

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    arris · nvg443b firmware13 дек. 2022 г.

  • CVE-2024-5194
    21Наблюдать

    Arris VAP2500 assoc_table.php command injection

    СредняяCVSS 5,1Эксплойта нетEPSS 4 %

    arris · vap2500 firmware22 мая 2024 г.