Medium severity5.3NVD Advisory· Published Apr 15, 2023· Updated Jun 17, 2026
CVE-2023-27571
CVE-2023-27571
Description
An issue was discovered in DG3450 Cable Gateway AR01.02.056.18_041520_711.NCS.10. The troubleshooting_logs_download.php log file download functionality does not check the session cookie. Thus, an attacker can download all log files.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:o:commscope:dg3450_firmware:ar01.02.056.18_041520_711.ncs.10:*:*:*:*:*:*:*
- CommScope Arris/DG3450 Cable Gatewaydescription
- Range: AR01.02.056.18_041520_711.NCS.10
Patches
Vulnerability mechanics
References
3- sec-consult.com/en/vulnerability-lab/advisories/index.htmlnvdExploitThird Party Advisory
- sec-consult.com/vulnerability-lab/advisory/multiple-vulnerabilities-in-arris-dg3450-cable-gateway/nvdExploitThird Party Advisory
- www.sec-consult.com/en/blog/nvdNot Applicable
News mentions
0No linked articles in our index yet.