CVE-2023-27571: Commscope DG3450 Firmware
Medium severity, CVSS 5.3. EPSS: 0.9% chance of exploitation in the next 30 days.
An issue was discovered in DG3450 Cable Gateway AR01.02.056.18_041520_711.NCS.10. The troubleshooting_logs_download.php log file download functionality does not check the session cookie. Thus, an attacker can download all log files.
Affected products
- Commscope DG3450 Firmware: version ar01.02.056.18_041520_711.ncs.10 only
Published 2023-04-15. Last modified 2026-06-17.