First published: Tue May 05 2020(Updated: )
CSRF in login.asp on Ruckus devices allows an attacker to access the panel, and use SSRF to perform scraping or other analysis via the SUBCA-1 field on the Wireless Admin screen.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Commscope Ruckus Zoneflex R500 Firmware | ||
Commscope Ruckus Zoneflex R500 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this CSRF vulnerability in login.asp on Ruckus devices is CVE-2020-8830.
The severity of CVE-2020-8830 is high with a severity value of 8.8.
The Commscope Ruckus Zoneflex R500 Firmware is affected by CVE-2020-8830.
An attacker can exploit this vulnerability by accessing the panel through CSRF in login.asp on Ruckus devices, and then using SSRF to perform scraping or other analysis via the SUBCA-1 field on the Wireless Admin screen.
Please refer to the provided reference link for any available fixes or patches for CVE-2020-8830.