Vulnerabilities
Vulnerable Software
Ruckuswireless:  >> H350  Security Vulnerabilities
A cross-site-scripting vulnerability exists in Ruckus Access Point products (ZoneDirector, SmartZone, and AP Solo). If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who is logging in the product. As for the affected products/models/versions, see the information provided by the vendor listed under [References] section or the list under [Product Status] section.
CVSS Score
6.1
EPSS Score
0.003
Published
2023-12-07
CVE-2023-25717
Known exploited
Ruckus Wireless Admin through 10.4 allows Remote Code Execution via an unauthenticated HTTP GET Request, as demonstrated by a /forms/doLogin?login_username=admin&password=password$(curl substring.
CVSS Score
9.8
EPSS Score
0.944
Published
2023-02-13


Contact Us

Shodan ® - All rights reserved