CVE-2021-41552

CommScope SURFboard SBG6950AC2 9.1.103AA23 devices allow Command Injection.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:commscope:arris_surfboard_sbg6950ac2_firmware:9.1.103aa23:*:*:*:*:*:*:*
cpe:2.3:h:commscope:arris_surfboard_sbg6950ac2:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:commscope:arris_surfboard_sbg7400ac2_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:commscope:arris_surfboard_sbg7400ac2:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:commscope:arris_surfboard_sbg7580ac_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:commscope:arris_surfboard_sbg7580ac:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:commscope:arris_surfboard_sbg7600ac2_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:commscope:arris_surfboard_sbg7600ac2:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:commscope:arris_surfboard_sbg10_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:commscope:arris_surfboard_sbg10:-:*:*:*:*:*:*:*

History

23 Feb 2022, 16:15

Type Values Removed Values Added
References (MISC) https://commscope.com - (MISC) https://commscope.com - Vendor Advisory
References (MISC) https://arris.my.salesforce.com/sfc/p/#30000000kUAL/a/4Q000000Raud/cRx46eSijpwhTpoeWSgB1dQehSMwFrLV1gurcqI35QY - (MISC) https://arris.my.salesforce.com/sfc/p/#30000000kUAL/a/4Q000000Raud/cRx46eSijpwhTpoeWSgB1dQehSMwFrLV1gurcqI35QY - Third Party Advisory
CVSS v2 : unknown
v3 : unknown
v2 : 5.8
v3 : 8.8
First Time Commscope arris Surfboard Sbg7580ac
Commscope arris Surfboard Sbg10
Commscope arris Surfboard Sbg7600ac2
Commscope arris Surfboard Sbg6950ac2 Firmware
Commscope
Commscope arris Surfboard Sbg10 Firmware
Commscope arris Surfboard Sbg7600ac2 Firmware
Commscope arris Surfboard Sbg7400ac2 Firmware
Commscope arris Surfboard Sbg7400ac2
Commscope arris Surfboard Sbg6950ac2
Commscope arris Surfboard Sbg7580ac Firmware
CWE CWE-77
CPE cpe:2.3:h:commscope:arris_surfboard_sbg7400ac2:-:*:*:*:*:*:*:*
cpe:2.3:o:commscope:arris_surfboard_sbg7400ac2_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:commscope:arris_surfboard_sbg7580ac:-:*:*:*:*:*:*:*
cpe:2.3:o:commscope:arris_surfboard_sbg7580ac_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:commscope:arris_surfboard_sbg10_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:commscope:arris_surfboard_sbg10:-:*:*:*:*:*:*:*
cpe:2.3:o:commscope:arris_surfboard_sbg6950ac2_firmware:9.1.103aa23:*:*:*:*:*:*:*
cpe:2.3:h:commscope:arris_surfboard_sbg7600ac2:-:*:*:*:*:*:*:*
cpe:2.3:o:commscope:arris_surfboard_sbg7600ac2_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:commscope:arris_surfboard_sbg6950ac2:-:*:*:*:*:*:*:*

17 Feb 2022, 14:15

Type Values Removed Values Added
Summary CommScope URFboard SBG6950AC2 9.1.103AA23 devices allow Command Injection. CommScope SURFboard SBG6950AC2 9.1.103AA23 devices allow Command Injection.

15 Feb 2022, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-02-15 14:15

Updated : 2023-12-10 14:22


NVD link : CVE-2021-41552

Mitre link : CVE-2021-41552

CVE.ORG link : CVE-2021-41552


JSON object : View

Products Affected

commscope

  • arris_surfboard_sbg7400ac2
  • arris_surfboard_sbg7580ac
  • arris_surfboard_sbg10_firmware
  • arris_surfboard_sbg10
  • arris_surfboard_sbg6950ac2
  • arris_surfboard_sbg7400ac2_firmware
  • arris_surfboard_sbg6950ac2_firmware
  • arris_surfboard_sbg7580ac_firmware
  • arris_surfboard_sbg7600ac2
  • arris_surfboard_sbg7600ac2_firmware
CWE
CWE-77

Improper Neutralization of Special Elements used in a Command ('Command Injection')