CVE-2020-13918: High severity ruckus wireless unleashed vulnerability
Incorrect access control in webs in Ruckus Wireless Unleashed through 200.7.10.102.92 allows a remote attacker to leak system information (that can be used for a jailbreak) via an unauthenticated crafted HTTP request. This affects C110, E510, H320, H510, M510, R320, R310, R500, R510 R600, R610, R710, R720, R750, T300, T301n, T301s, T310c, T310d, T310n, T310s, T610, T710, and T710s devices.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-13918?
CVE-2020-13918 has a moderate severity level, as it allows remote attackers to leak system information without authentication.
How do I fix CVE-2020-13918?
To fix CVE-2020-13918, upgrade to a newer version of the Ruckus Wireless Unleashed firmware beyond 200.7.10.102.92.
What products are affected by CVE-2020-13918?
CVE-2020-13918 affects various Ruckus Wireless Unleashed firmware versions, specifically those up to 200.7.10.102.92.
Can CVE-2020-13918 allow remote attackers to execute code?
No, CVE-2020-13918 is primarily an information disclosure vulnerability and does not directly allow code execution.
Is CVE-2020-13918 an authenticated or unauthenticated vulnerability?
CVE-2020-13918 is an unauthenticated vulnerability, which means it can be exploited without needing valid credentials.