CVE-2020-7983: CSRF
A CSRF issue in login.asp on Ruckus R500 3.4.2.0.384 devices allows remote attackers to access the panel or conduct SSRF attacks.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-7983?
The severity of CVE-2020-7983 is high with a CVSS score of 8.1.
What is the description of CVE-2020-7983?
CVE-2020-7983 is a Cross-Site Request Forgery (CSRF) issue that allows remote attackers to access the panel or conduct Server-Side Request Forgery (SSRF) attacks on Ruckus R500 3.4.2.0.384 devices.
Which software versions are affected by CVE-2020-7983?
Ruckus Zoneflex R500 Firmware version 3.4.2.0.384 is affected by CVE-2020-7983.
How can I fix the CSRF issue in CVE-2020-7983?
To fix the CSRF issue in CVE-2020-7983, it is recommended to update the firmware of Ruckus R500 devices to a version that is not vulnerable.
Where can I find more information about CVE-2020-7983?
You can find more information about CVE-2020-7983 at the following reference: https://gist.github.com/CyberSecurityUP/26c5b032897630fe8407da4a8ef216d4