Coship manufactures residential gateways and cable/telecom endpoint devices, including the RT3052 router and EMTA access point lines, which serve as critical network entry points in broadband delivery infrastructure. The vulnerability pattern centers on authentication and input-handling weaknesses—including missing authentication for critical functions, improper credential protection, and cross-site scripting—that are characteristic of embedded web management interfaces and firmware with limited security-hardening tooling. Current severity, exploitation status, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Coship over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-6441CRITICAL An issue was discovered on Shenzhen Coship RT3050 4.0.0.40, RT3052 4.0.0.48, RT7620 10.0.0.49, WM3300 5.0.0.54, and WM3300 5.0.0.55 devices. The password reset functionality of the | Mar 21, 2019 | 9.8 | 64 | NO | YES |
CVE-2019-19822HIGH A certain router administration interface (that includes Realtek APMIB 0.11f for Boa 0.94.14rc21) allows remote attackers to retrieve the configuration, including sensitive data (u | Jan 27, 2020 | 7.5 | 37 | NO | YES |
CVE-2019-19823HIGH A certain router administration interface (that includes Realtek APMIB 0.11f for Boa 0.94.14rc21) stores cleartext administrative passwords in flash memory and in a file. This affe | Jan 27, 2020 | 7.5 | 35 | NO | YES |
CVE-2018-8772MEDIUM Coship RT3052 4.0.0.48 devices allow XSS via a crafted SSID field on the "Wireless Setting - Basic" screen. | Apr 10, 2018 | 6.1 | 29 | NO | YES |
CVE-2019-7564CRITICAL An issue was discovered on Shenzhen Coship WM3300 WiFi Router 5.0.0.55 devices. The password reset functionality of the Wireless SSID doesn't require any type of authentication. By | May 7, 2019 | 9.8 | 25 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Coship.
Media articles that mention a CVE ID that affects a product developed by Coship — matched by CVE ID, not by vendor name.