Known Vulnerabilities for products from Adtran

Listed below are 10 of the newest known vulnerabilities associated with the vendor "Adtran".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Additional devices specifications by Adtran can be found at device.report : Adtran

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2022-37661 json SmartRG SR506n 2.5.15 and SR510n 2.6.13 routers are vulnerable to Remote Code Execution (RCE) via the ping host feature. 9.8 - CRITICAL 2022-09-14 2023-01-20
CVE-2021-25681 json ** UNSUPPORTED WHEN ASSIGNED ** AdTran Personal Phone Manager 10.8.1 software is vulnerable to an issue that allows for exfil... 7.5 - HIGH 2021-04-20 2023-11-07
CVE-2021-25680 json ** UNSUPPORTED WHEN ASSIGNED ** The AdTran Personal Phone Manager software is vulnerable to multiple reflected cross-site scr... 6.1 - MEDIUM 2021-04-20 2023-11-07
CVE-2021-25679 json ** UNSUPPORTED WHEN ASSIGNED ** The AdTran Personal Phone Manager software is vulnerable to an authenticated stored cross-sit... 5.4 - MEDIUM 2021-04-20 2023-11-07
CVE-2018-19648 json An issue was discovered in ADTRAN PMAA 1.6.2-1, 1.6.3, and 1.6.4. NETCONF Access Management (NACM) allows unprivileged users ... 8.8 - HIGH 2019-03-27 2019-10-03
CVE-2013-5210 json Cross-site scripting (XSS) vulnerability in the GUI login page in ADTRAN AOS before R10.8.1 on the NetVanta 7100 allows remot... Not Provided 2013-12-30 2026-04-29
CVE-2005-4566 json Buffer overflow in the Internet Key Exchange version 1 (IKEv1) implementation in ADTRAN NetVanta before 10.03.03.E might allo... Not Provided 2005-12-29 2025-04-03
CVE-2005-4565 json Format string vulnerability in the Internet Key Exchange version 1 (IKEv1) implementation in ADTRAN NetVanta before 10.03.03.... Not Provided 2005-12-29 2025-04-03
CVE-2005-4564 json The Internet Key Exchange version 1 (IKEv1) implementation in ADTRAN NetVanta before 10.03.03.E might allow remote attackers ... Not Provided 2005-12-29 2025-04-03
CVE-2000-0292 json The Adtran MX2800 M13 Multiplexer allows remote attackers to cause a denial of service via a ping flood to the Ethernet inter... Not Provided 2000-04-19 2025-04-03

Known software with vulnerabilities from Adtran

Type Vendor Product Version
Operating
System
AdtranAos10.8.0
HardwareAdtranNetvanta 7060-
HardwareAdtranNetvanta 7100-
ApplicationAdtranPmaa1.6.2
© CVE.report 2026 |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report