CVE-2020-13919: Command Injection
emfd/libemf in Ruckus Wireless Unleashed through 200.7.10.102.92 allows a remote attacker to achieve command injection via a crafted HTTP request. This affects C110, E510, H320, H510, M510, R320, R310, R500, R510 R600, R610, R710, R720, R750, T300, T301n, T301s, T310c, T310d, T310n, T310s, T610, T710, and T710s devices.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-13919?
CVE-2020-13919 has been assigned a high severity rating due to the potential for remote command injection.
How do I fix CVE-2020-13919?
To fix CVE-2020-13919, users should update to a version of Ruckus Unleashed firmware that is beyond 200.7.10.102.92.
Which devices are affected by CVE-2020-13919?
CVE-2020-13919 affects various Ruckus Wireless devices running the Unleashed firmware version up to and including 200.7.10.102.92.
What type of attack does CVE-2020-13919 allow?
CVE-2020-13919 allows a remote attacker to perform command injection through crafted HTTP requests.
Is CVE-2020-13919 still exploitable if I have updated my firmware?
No, if you have updated your firmware to a version beyond 200.7.10.102.92, CVE-2020-13919 should no longer be exploitable.