CVE-2020-22657: Critical severity ruckus wireless r310 firmware vulnerability
In Ruckus R310 10.5.1.0.199, Ruckus R500 10.5.1.0.199, Ruckus R600 10.5.1.0.199, Ruckus T300 10.5.1.0.199, Ruckus T301n 10.5.1.0.199, Ruckus T301s 10.5.1.0.199, SmartCell Gateway 200 (SCG200) before 3.6.2.0.795, SmartZone 100 (SZ-100) before 3.6.2.0.795, SmartZone 300 (SZ300) before 3.6.2.0.795, Virtual SmartZone (vSZ) before 3.6.2.0.795, ZoneDirector 1100 9.10.2.0.130, ZoneDirector 1200 10.2.1.0.218, ZoneDirector 3000 10.2.1.0.218, ZoneDirector 5000 10.0.1.0.151, a vulnerability allows attackers to perform WEB GUI login authentication bypass.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2020-22657?
CVE-2020-22657 has a high severity rating due to potential misuse of vulnerable firmware components.
How do I fix CVE-2020-22657?
To fix CVE-2020-22657, update the affected Ruckus firmware to versions above 10.5.1.0.199 or SmartZone firmware to 3.6.2.0.795.
Which Ruckus devices are affected by CVE-2020-22657?
Ruckus devices including R310, R500, R600, T300, T301n, T301s and various SmartZone and ZoneDirector models are affected by CVE-2020-22657.
What potential risks does CVE-2020-22657 pose?
CVE-2020-22657 can lead to unauthorized access and manipulation of network configurations, posing risks to network security.
Is there any known exploit for CVE-2020-22657?
As of now, specific exploits for CVE-2020-22657 have not been publicly documented, but the vulnerability's nature suggests a risk of exploitation.