Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Swisscom

First CVE: May 20, 2015Active for: 11 yearsTotal CVEs: 9

Swisscom's vulnerability profile concentrates in consumer and small-business network appliances, particularly its Internet Box and Centro Grande product families, which serve as residential gateways and telecommunications equipment. The recurring weakness classes—including uncontrolled search-path elements, cleartext transmission of sensitive data, input-validation flaws, cross-site scripting, and OS command injection—reflect the embedded firmware and web-management interfaces typical of deployed network devices. Current severity, exploitation activity, and exposure counts are shown alongside this summary.

FAUCET AI Generated
9
Total CVEs
More Total CVEs than 91% of tracked vendors
0.2
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 1% of tracked vendors
7.2
Avg CVSS Score
Higher Avg CVSS Score than 54% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Swisscom over time

Volume of CVEsAvg CVSS Base Score
First CVE
May 20, 2015
11 years ago
Most Recent CVE
Aug 4, 2020
2,180 days ago

Products(16 total)

Top CVEs

Signals from CVEs in this vendor scope (9 CVEs).

9 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2020-16134HIGH
An issue was discovered on Swisscom Internet Box 2, Internet Box Standard, Internet Box Plus prior to 10.04.38, Internet Box 3 prior to 11.01.20, and Internet Box light prior to 08
Aug 4, 20208.025NONO
CVE-2019-19940HIGH
Incorrect input sanitation in text-oriented user interfaces (telnet, ssh) in Swisscom Centro Grande before 6.16.12 allows remote authenticated users to execute arbitrary commands v
Mar 16, 20207.224NONO
CVE-2019-19942HIGH
Missing output sanitation in Swisscom Centro Grande Centro Grande before 6.16.12, Centro Business 1.0 (ADB) before 7.10.18, and Centro Business 2.0 before 8.02.04 allows a remote a
Mar 16, 20207.523NONO
CVE-2018-16596HIGH
A stack-based buffer overflow in the LAN UPnP service running on UDP port 1900 of Swisscom Internet-Box (2, Standard, and Plus) prior to v09.04.00 and Internet-Box light prior to v
Dec 17, 20187.523NONO
CVE-2018-6766HIGH
Swisscom TVMediaHelper 1.1.0.50 contains a vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary code on the targeted system. This vulnerability e
Mar 27, 20187.823NONO
CVE-2018-16225MEDIUM
The QBee MultiSensor Camera through 4.16.4 accepts unencrypted network traffic from clients (such as the QBee Cam application through 1.0.5 for Android and the Swisscom Home applic
Sep 18, 20186.522NONO
CVE-2018-6765HIGH
Swisscom MySwisscomAssistant 2.17.1.1065 contains a vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary code on the targeted system. This vulner
Mar 27, 20187.822NONO
CVE-2015-1188HIGH
The certificate verification functions in the HNDS service in Swisscom Centro Grande (ADB) DSL routers with firmware before 6.14.00 allows remote attackers to access the management
May 20, 20157.521NONO
CVE-2019-19941MEDIUM
Missing hostname validation in Swisscom Centro Grande before 6.16.12 allows a remote attacker to inject its local IP address as a domain entry in the DNS service of the router via
Mar 16, 20205.419NONO
View all 9 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products9 CVEs
22%
78%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local2 (22.2%)
Network3 (33.3%)
Unknown1 (11.1%)
Physical0 (0.0%)
Adjacent Network3 (33.3%)
Attack Complexity
Low7 (77.8%)
High1 (11.1%)
Unknown1 (11.1%)
User Interaction
None7 (77.8%)
Unknown1 (11.1%)
Required1 (11.1%)
Privileges Required
Low4 (44.4%)
High1 (11.1%)
None3 (33.3%)
Unknown1 (11.1%)

Exploit Exposure

Signals from CVEs in this vendor scope (9 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Swisscom.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Swisscom — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Swisscom's Products

View all 1 CNAs →

Top CWEs