CVE-2020-9476

Severity CVSS v4.0:
Pending analysis
Type:
CWE-326 Inadequate Encryption Strength
Publication date:
04/03/2020
Last modified:
07/11/2023

Description

ARRIS TG1692A devices allow remote attackers to discover the administrator login name and password by reading the /login page and performing base64 decoding.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:commscope:arris_tg1692a_firmware:9.1.103de2:*:*:*:*:*:*:*
cpe:2.3:h:commscope:arris_tg1692a:-:*:*:*:*:*:*:*