Ruckus Wireless Zoneflex 2942 devices with firmware 9.6.0.0.267 allow remote attackers to bypass authentication, and subsequently access certain configuration/ and maintenance/ scripts, by constructing a crafted URI after receiving an authentication error for an arbitrary login attempt.
References
Link | Resource |
---|---|
http://www.kb.cert.org/vuls/id/742932 | US Government Resource |
http://www.kb.cert.org/vuls/id/742932 | US Government Resource |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 01:56
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.kb.cert.org/vuls/id/742932 - US Government Resource |
Information
Published : 2013-10-16 10:52
Updated : 2024-11-21 01:56
NVD link : CVE-2013-5030
Mitre link : CVE-2013-5030
CVE.ORG link : CVE-2013-5030
JSON object : View
Products Affected
ruckuswireless
- zoneflex_2942
- zoneflex_2942__firmware
CWE
CWE-264
Permissions, Privileges, and Access Controls