CVE-2014-8425: Arris VAP2500 Firmware

High severity, CVSS 7.8. EPSS: 3.1% chance of exploitation in the next 30 days.

The management portal in ARRIS VAP2500 before FW08.41 allows remote attackers to obtain credentials by reading the configuration files.

Affected products

  • Arris VAP2500 Firmware: up to and including 08.41

Published 2014-11-28. Last modified 2026-06-17.