Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown
CVE-2024-5196
Disclosure Date: May 22, 2024 (last updated May 23, 2024)
A vulnerability classified as critical has been found in Arris VAP2500 08.50. This affects an unknown part of the file /tools_command.php. The manipulation of the argument cmb_header/txt_command leads to command injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-265833 was assigned to this vulnerability.
0
Attacker Value
Unknown
CVE-2024-5195
Disclosure Date: May 22, 2024 (last updated May 22, 2024)
A vulnerability was found in Arris VAP2500 08.50. It has been rated as critical. Affected by this issue is some unknown functionality of the file /diag_s.php. The manipulation of the argument customer_info leads to command injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-265832.
0
Attacker Value
Unknown
CVE-2024-5194
Disclosure Date: May 22, 2024 (last updated May 22, 2024)
A vulnerability was found in Arris VAP2500 08.50. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /assoc_table.php. The manipulation of the argument id leads to command injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-265831.
0
Attacker Value
Unknown
CVE-2014-8425
Disclosure Date: November 28, 2014 (last updated October 05, 2023)
The management portal in ARRIS VAP2500 before FW08.41 allows remote attackers to obtain credentials by reading the configuration files.
0
Attacker Value
Unknown
CVE-2014-8423
Disclosure Date: November 28, 2014 (last updated October 05, 2023)
Unspecified vulnerability in the management portal in ARRIS VAP2500 before FW08.41 allows remote attackers to execute arbitrary commands via unknown vectors.
0
Attacker Value
Unknown
CVE-2014-8424
Disclosure Date: November 28, 2014 (last updated October 05, 2023)
ARRIS VAP2500 before FW08.41 does not properly validate passwords, which allows remote attackers to bypass authentication.
0