RCA's vulnerability profile centers on digital cable modem products, a narrowly scoped but infrastructure-critical device category that sits at the network edge of many residential and small-business deployments. The observed weakness classes, including improper input validation and other implementation issues, reflect the firmware and protocol-handling demands of devices that bridge multiple network segments. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Rca over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2010-1544MEDIUM micro_httpd on the RCA DCM425 cable modem allows remote attackers to cause a denial of service (device reboot) via a long string to TCP port 80. | Apr 26, 2010 | 5.0 | 24 | NO | YES |
CVE-2002-2110MEDIUM The RCA Digital Cable Modems DCM225 and DCM225E allow remote attackers to cause a denial of service (modem device reset) by connecting to port 80 on the 10.0.0.0/8 device. | Dec 31, 2002 | 5.0 | 15 | NO | NO |
CVE-2002-2112MEDIUM RCA Digital Cable Modem DCM225 and DCM225E, and other modems that must conform to the Data-over-Cable Service Interface Specifications DOCSIS standard, uses the "public" community | Dec 31, 2002 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Rca.
Media articles that mention a CVE ID that affects a product developed by Rca — matched by CVE ID, not by vendor name.