CommScope's vulnerability profile centers on a broad portfolio of wireless networking and infrastructure products, particularly Ruckus-branded access points, controllers, and switching systems deployed across enterprise campuses and service-provider networks. Vulnerabilities affecting the vendor skew strongly toward critical-severity outcomes and frequently acquire public exploit code, reflecting the command-injection, credential-handling, and web-interface weaknesses that recur across its product line. The exposure concentrates in flagship products such as the Ruckus R560, R610, H320, C110, and M510 series and is characterized by command-injection flaws, cross-site request forgery, hard-coded credentials, and sensitive-information exposure that are typical of embedded network appliances with web management interfaces. Defenders should treat CommScope wireless and switching infrastructure as a high-priority patching target given the critical-severity skew and assume that internet-reachable management ports and default credential exposure pose immediate risk. Live severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Commscope over time
Signals from CVEs in this vendor scope (68 CVEs).
68 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-25717CRITICAL Ruckus Wireless Admin through 10.4 allows Remote Code Execution via an unauthenticated HTTP GET Request, as demonstrated by a /forms/doLogin?login_username=admin&password=password$ | Feb 13, 2023 | 9.8 | 98 | YES | YES |
CVE-2021-33221CRITICAL An issue was discovered in CommScope Ruckus IoT Controller 1.7.1.0 and earlier. There are Unauthenticated API Endpoints. | Jul 7, 2021 | 9.8 | 71 | NO | YES |
CVE-2020-26879CRITICAL Ruckus vRioT through 1.5.1.0.21 has an API backdoor that is hardcoded into validate_token.py. An unauthenticated attacker can interact with the service API by using a backdoor valu | Oct 26, 2020 | 9.8 | 66 | NO | YES |
CVE-2022-45701HIGH Arris TG2482A firmware through 9.1.103GEM9 allow Remote Code Execution (RCE) via the ping utility feature. | Feb 17, 2023 | 8.8 | 65 | NO | YES |
CVE-2021-33216CRITICAL An issue was discovered in CommScope Ruckus IoT Controller 1.7.1.0 and earlier. An Undocumented Backdoor exists, allowing shell access via a developer account. | Jul 7, 2021 | 9.8 | 46 | NO | YES |
CVE-2022-27002CRITICAL Arris TR3300 v1.0.13 were discovered to contain a command injection vulnerability in the ddns function via the ddns_name, ddns_pwd, h_ddns、ddns_host parameters. This vulnerability | Mar 15, 2022 | 9.8 | 35 | NO | NO |
CVE-2022-26998CRITICAL Arris TR3300 v1.0.13 was discovered to contain a command injection vulnerability in the wps setting function via the wps_enrolee_pin parameter. This vulnerability allows attackers | Mar 15, 2022 | 9.8 | 33 | NO | NO |
CVE-2020-26878HIGH Ruckus through 1.5.1.0.21 is affected by remote command injection. An authenticated user can submit a query to the API (/service/v1/createUser endpoint), injecting arbitrary comman | Oct 26, 2020 | 8.8 | 33 | NO | NO |
CVE-2025-44961HIGH In RUCKUS SmartZone (SZ) before 6.1.2p3 Refresh Build, OS command injection can occur via an IP address field provided by an authenticated user. | Aug 4, 2025 | 8.8 | 32 | NO | NO |
CVE-2022-27001CRITICAL Arris TR3300 v1.0.13 were discovered to contain a command injection vulnerability in the dhcp function via the hostname parameter. This vulnerability allows attackers to execute ar | Mar 15, 2022 | 9.8 | 32 | NO | NO |
Signals from CVEs in this vendor scope (68 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Commscope.
Media articles that mention a CVE ID that affects a product developed by Commscope — matched by CVE ID, not by vendor name.