CommScope ARRIS TR4400 devices with firmware through A1.00.004-180301 are vulnerable to an authentication bypass to the administrative interface because they include the current base64 encoded password within http://192.168.1.1/login.html. Any user connected to the Wi-Fi can exploit this.
CVSS Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HCommscope Tr4400
HWCommscopeall versionsCommscope Tr4400 Firmware
OSCommscope≤ a1.00.004-180301
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
Auth Bypass
CWE
Related vulnerabilities
CVE-2019-15806CRITICAL9.8PL ✓same product
Auth Bypass w CommScope ARRIS TR4400 — hasło w kodowaniu Base64 w HTML
CVE-2023-25717CRITICAL9.8⚠ KEVPL ✓same vendor
RCE bez uwierzytelnienia w Ruckus Wireless Admin (do wersji 10.4)
CVE-2025-67305CRITICAL9.8PL ✓same vendor
Hardcoded SSH keys w Commscope RUCKUS Network Director (RCE)
CVE-2025-67304CRITICAL9.8PL ✓same vendor
Hardcoded credentials w Ruckus Network Director — dostęp do PostgreSQL i RCE
CVE-2025-44961CRITICAL9.9PL ✓same vendor
Command injection w RUCKUS SmartZone przez pole adresu IP