CVE-2014-8424: Arris VAP2500 Firmware

High severity, CVSS 7.8. EPSS: 59.6% chance of exploitation in the next 30 days.

ARRIS VAP2500 before FW08.41 does not properly validate passwords, which allows remote attackers to bypass authentication.

Affected products

  • Arris VAP2500 Firmware: up to and including 08.41

Published 2014-11-28. Last modified 2026-06-17.