← Back

Commscope

commscope

54 CVEs • 96 products

Products (96)

Click to collapse
Toggle
Ruckus Vriot
ruckus_vriot
Arris Sbg901
arris_sbg901
Arris Tg1682g
arris_tg1682g
Arris Nvg589
arris_nvg589
Arris Nvg599
arris_nvg599
Arris Dg950a
arris_dg950a
Arris Dg950s
arris_dg950s
Tr4400
tr4400
Arris Tg1692a
arris_tg1692a
Arris Tr3300
arris_tr3300
Arris Tg2482a
arris_tg2482a
Arris Tg2492
arris_tg2492
Arris Sbg10
arris_sbg10
Dg3450
dg3450
Ruckus C110
ruckus_c110
Ruckus E510
ruckus_e510
Ruckus H320
ruckus_h320
Ruckus H350
ruckus_h350
Ruckus H510
ruckus_h510
Ruckus H550
ruckus_h550
Ruckus M510
ruckus_m510
Ruckus R310
ruckus_r310
Ruckus R320
ruckus_r320
Ruckus R350
ruckus_r350
Ruckus R350e
ruckus_r350e
Ruckus R510
ruckus_r510
Ruckus R550
ruckus_r550
Ruckus R560
ruckus_r560
Ruckus R610
ruckus_r610
Ruckus R650
ruckus_r650
Ruckus R670
ruckus_r670
Ruckus R710
ruckus_r710
Ruckus R720
ruckus_r720
Ruckus R730
ruckus_r730
Ruckus R750
ruckus_r750
Ruckus R760
ruckus_r760
Ruckus R770
ruckus_r770
Ruckus R850
ruckus_r850
Ruckus T310c
ruckus_t310c
Ruckus T310n
ruckus_t310n
Ruckus T310s
ruckus_t310s
Ruckus T350c
ruckus_t350c
Ruckus T350d
ruckus_t350d
Ruckus T350se
ruckus_t350se
Ruckus T610
ruckus_t610
Ruckus T670
ruckus_t670
Ruckus T710
ruckus_t710
Ruckus T710s
ruckus_t710s
Ruckus T750
ruckus_t750
Ruckus T750se
ruckus_t750se
Ruckus T310d
ruckus_t310d

CVEs (54)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Commscope
1Tr4400 Firmware
Jun 17, 2026
Aug 29, 2019
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
CommScope ARRIS TR4400 devices with firmware through A1.00.004-180301 are vulnerable to an authentication bypass to the administrative interface because they include the current base64 encoded password within http://192....Show more
CommScope ARRIS TR4400 devices with firmware through A1.00.004-180301 are vulnerable to an authentication bypass to the administrative interface because they include the current base64 encoded password within http://192.168.1.1/basic_sett.html. Any user connected to the Wi-Fi can exploit this.Show less
1Commscope
1Tr4400 Firmware
Jun 17, 2026
Aug 29, 2019
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
CommScope ARRIS TR4400 devices with firmware through A1.00.004-180301 are vulnerable to an authentication bypass to the administrative interface because they include the current base64 encoded password within http://192....Show more
CommScope ARRIS TR4400 devices with firmware through A1.00.004-180301 are vulnerable to an authentication bypass to the administrative interface because they include the current base64 encoded password within http://192.168.1.1/login.html. Any user connected to the Wi-Fi can exploit this.Show less
1Commscope
1Arris Sbg6580 2 Firmware
Nov 21, 2024
Dec 23, 2018
N/A· v4
9.8 CRITICAL· v3
5.0 MEDIUM· v2
ARRIS SBG6580-2 D30GW-SEAEAGLE-1.5.2.5-GA-00-NOSH devices allow remote attackers to discover credentials via iso.3.6.1.4.1.4491.2.4.1.1.6.1.1.0 and iso.3.6.1.4.1.4491.2.4.1.1.6.1.2.0 SNMP requests.
2Arris
Commscope
2Arris Dg950a Firmware
Dg950s Firmware
Nov 21, 2024
Dec 23, 2018
N/A· v4
9.8 CRITICAL· v3
5.0 MEDIUM· v2
ARRIS DG950A 7.10.145 and DG950S 7.10.145.EURO devices allow remote attackers to discover credentials via iso.3.6.1.4.1.4491.2.4.1.1.6.1.1.0 and iso.3.6.1.4.1.4491.2.4.1.1.6.1.2.0 SNMP requests.
1Commscope
1Arris Tg2492lg Na Firmware
Nov 21, 2024
Sep 26, 2018
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
The web component on ARRIS TG2492LG-NA 061213 devices allows remote attackers to obtain sensitive information via the /snmpGet oids parameter.
1Commscope
1Arris Tg1682g Firmware
Nov 21, 2024
May 14, 2018
N/A· v4
8.0 HIGH· v3
7.5 HIGH· v2
On Arris Touchstone Telephony Gateway TG1682G 9.1.103J6 devices, a logout action does not immediately destroy all state on the device related to the validity of the "credential" cookie, which might make it easier for att...Show more
On Arris Touchstone Telephony Gateway TG1682G 9.1.103J6 devices, a logout action does not immediately destroy all state on the device related to the validity of the "credential" cookie, which might make it easier for attackers to obtain access at a later time (e.g., "at least for a few minutes"). NOTE: there is no documentation stating that the web UI's logout feature was supposed to do anything beyond removing the cookie from one instance of a web browser; a client-side logout action is often not intended to address cases where a person has made a copy of a cookie outside of a browser.Show less
1Commscope
1Arris Tg1682g Firmware
Nov 21, 2024
May 14, 2018
N/A· v4
6.6 MEDIUM· v3
3.5 LOW· v2
Arris Touchstone Telephony Gateway TG1682G 9.1.103J6 devices are distributed by some ISPs with a default password of "password" for the admin account that is used over an unencrypted http://192.168.0.1 connection, which...Show more
Arris Touchstone Telephony Gateway TG1682G 9.1.103J6 devices are distributed by some ISPs with a default password of "password" for the admin account that is used over an unencrypted http://192.168.0.1 connection, which might allow remote attackers to bypass intended access restrictions by leveraging access to the local network. NOTE: one or more user's guides distributed by ISPs state "At a minimum, you should set a login password."Show less
1Commscope
1Arris Tg1682g Firmware
May 13, 2026
Nov 16, 2017
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
Arris TG1682G devices with Comcast TG1682_2.0s7_PRODse 10.0.59.SIP.PC20.CT software allow Unauthenticated Stored XSS via the actionHandler/ajax_managed_services.php service parameter.
2Cisco
Commscope
4Arris Tg1682g Firmware
Dpc3939 FirmwareDpc3939b Firmware+1 more
May 13, 2026
Jul 31, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421733-160420a-CMCST); Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421746-170221a-CMCST); Cisco DPC3939B (firmware version dpc3939b-...Show more
The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421733-160420a-CMCST); Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421746-170221a-CMCST); Cisco DPC3939B (firmware version dpc3939b-v303r204217-150321a-CMCST); Cisco DPC3941T (firmware version DPC3941_2.5s3_PROD_sey); and Arris TG1682G (eMTA&DOCSIS version 10.0.132.SIP.PC20.CT, software version TG1682_2.2p7s2_PROD_sey) devices allows remote attackers to execute arbitrary code via a specific (but unstated) exposed service. NOTE: the scope of this CVE does NOT include the concept of "Unnecessary Services" in general; the scope is only a single service that is unnecessarily exposed, leading to remote code execution. The details of that service might be disclosed at a later date.Show less
2Cisco
Commscope
4Arris Tg1682g Firmware
Dpc3939 FirmwareDpc3939b Firmware+1 more
May 13, 2026
Jul 31, 2017
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421733-160420a-CMCST); Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421746-170221a-CMCST); Cisco DPC3939B (firmware version dpc3939b-...Show more
The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421733-160420a-CMCST); Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421746-170221a-CMCST); Cisco DPC3939B (firmware version dpc3939b-v303r204217-150321a-CMCST); Cisco DPC3941T (firmware version DPC3941_2.5s3_PROD_sey); and Arris TG1682G (eMTA&DOCSIS version 10.0.132.SIP.PC20.CT, software version TG1682_2.2p7s2_PROD_sey) devices does not include the HTTPOnly flag in a Set-Cookie header for administration applications, which makes it easier for remote attackers to obtain potentially sensitive information via script access to cookies.Show less
2Cisco
Commscope
4Arris Tg1682g Firmware
Dpc3939 FirmwareDpc3939b Firmware+1 more
May 13, 2026
Jul 31, 2017
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421733-160420a-CMCST); Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421746-170221a-CMCST); Cisco DPC3939B (firmware version dpc3939b-...Show more
The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421733-160420a-CMCST); Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421746-170221a-CMCST); Cisco DPC3939B (firmware version dpc3939b-v303r204217-150321a-CMCST); Cisco DPC3941T (firmware version DPC3941_2.5s3_PROD_sey); and Arris TG1682G (eMTA&DOCSIS version 10.0.132.SIP.PC20.CT, software version TG1682_2.2p7s2_PROD_sey) devices does not set the secure flag for cookies in an https session to an administration application, which makes it easier for remote attackers to capture these cookies by intercepting their transmission within an http session.Show less
2Cisco
Commscope
2Arris Tg1682g Firmware
Dpc3939b Firmware
May 13, 2026
Jul 31, 2017
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
The Comcast firmware on Cisco DPC3939B (firmware version dpc3939b-v303r204217-150321a-CMCST) devices allows configuration changes via CSRF.
2Cisco
Commscope
2Arris Tg1682g Firmware
Dpc3939 Firmware
May 13, 2026
Jul 31, 2017
N/A· v4
6.5 MEDIUM· v3
3.3 LOW· v2
The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421733-160420a-CMCST); Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421746-170221a-CMCST); and Arris TG1682G (eMTA&DOCSIS version 10....Show more
The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421733-160420a-CMCST); Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421746-170221a-CMCST); and Arris TG1682G (eMTA&DOCSIS version 10.0.132.SIP.PC20.CT, software version TG1682_2.2p7s2_PROD_sey) devices makes it easy for remote attackers to determine the hidden SSID and passphrase for a Home Security Wi-Fi network.Show less
1Commscope
1Arris Sbg901
May 6, 2026
Jun 19, 2014
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Multiple cross-site request forgery (CSRF) vulnerabilities in goform/RgDdns in ARRIS (formerly Motorola) SBG901 SURFboard Wireless Cable Modem allow remote attackers to hijack the authentication of administrators for req...Show more
Multiple cross-site request forgery (CSRF) vulnerabilities in goform/RgDdns in ARRIS (formerly Motorola) SBG901 SURFboard Wireless Cable Modem allow remote attackers to hijack the authentication of administrators for requests that (1) change the dns service via the DdnsService parameter, (2) change the username via the DdnsUserName parameter, (3) change the password via the DdnsPassword parameter, or (4) change the host name via the DdnsHostName parameter.Show less