Incorrect access control in webs in Ruckus Wireless Unleashed through 200.7.10.102.92 allows a remote attacker to leak system information (that can be used for a jailbreak) via an unauthenticated crafted HTTP request. This affects C110, E510, H320, H510, M510, R320, R310, R500, R510 R600, R610, R710, R720, R750, T300, T301n, T301s, T310c, T310d, T310n, T310s, T610, T710, and T710s devices.
References
| Link | Resource |
|---|---|
| https://support.ruckuswireless.com/security_bulletins/304 | Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
Information
Published : 2020-07-28 15:15
Updated : 2021-07-21 11:39
NVD link : CVE-2020-13918
Mitre link : CVE-2020-13918
JSON object : View
Products Affected
ruckuswireless
- r710
- r510
- r610
- t310s
- m510
- c110
- r500
- t300
- h510
- h320
- t710s
- r310
- t310n
- r750
- t301s
- t301n
- e510
- r320
- t610
- t710
- unleashed_firmware
- r720
- r600
- t310d
- t310c
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
