CVE-2017-6223: OS Command Injection
Ruckus Wireless Zone Director Controller firmware releases ZD9.9.x, ZD9.10.x, ZD9.13.0.x less than 9.13.0.0.232 contain OS Command Injection vulnerabilities in the ping functionality that could allow local authenticated users to execute arbitrary privileged commands on the underlying operating system.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-6223?
CVE-2017-6223 is considered to have a high severity due to its potential for OS Command Injection.
Who is affected by CVE-2017-6223?
CVE-2017-6223 affects Ruckus Wireless Zone Director firmware versions ZD9.9.x, ZD9.10.x, and ZD9.13.0.x prior to 9.13.0.0.232.
How do I fix CVE-2017-6223?
To fix CVE-2017-6223, users should upgrade their Ruckus Wireless Zone Director firmware to version 9.13.0.0.232 or later.
What type of vulnerability is CVE-2017-6223?
CVE-2017-6223 is categorized as an OS Command Injection vulnerability within the ping functionality.
Can local users exploit CVE-2017-6223?
Yes, local authenticated users can exploit CVE-2017-6223 to execute arbitrary privileged commands on the underlying operating system.