CVE-2020-22657

In Ruckus R310 10.5.1.0.199, Ruckus R500 10.5.1.0.199, Ruckus R600 10.5.1.0.199, Ruckus T300 10.5.1.0.199, Ruckus T301n 10.5.1.0.199, Ruckus T301s 10.5.1.0.199, SmartCell Gateway 200 (SCG200) before 3.6.2.0.795, SmartZone 100 (SZ-100) before 3.6.2.0.795, SmartZone 300 (SZ300) before 3.6.2.0.795, Virtual SmartZone (vSZ) before 3.6.2.0.795, ZoneDirector 1100 9.10.2.0.130, ZoneDirector 1200 10.2.1.0.218, ZoneDirector 3000 10.2.1.0.218, ZoneDirector 5000 10.0.1.0.151, a vulnerability allows attackers to perform WEB GUI login authentication bypass.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:h:ruckuswireless:r310:-:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:r310_firmware:10.5.1.0.199:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:h:ruckuswireless:r500:-:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:r500_firmware:10.5.1.0.199:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:h:ruckuswireless:r600:-:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:r600_firmware:10.5.1.0.199:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:h:ruckuswireless:t300:-:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:t300_firmware:10.5.1.0.199:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:h:ruckuswireless:t301n:-:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:t301n_firmware:10.5.1.0.199:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:h:ruckuswireless:t301s:-:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:t301s_firmware:10.5.1.0.199:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:h:ruckuswireless:scg200:-:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:scg200_firmware:*:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:h:ruckuswireless:sz-100:-:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:sz-100_firmware:*:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:h:ruckuswireless:sz-300:-:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:sz-300_firmware:*:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:h:ruckuswireless:vsz:-:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:vsz_firmware:*:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:o:ruckuswireless:zonedirector_1100_firmware:9.10.2.0.130:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:zonedirector_1100:-:*:*:*:*:*:*:*

Configuration 12 (hide)

AND
cpe:2.3:o:ruckuswireless:zonedirector_1200_firmware:10.2.1.0.218:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:zonedirector_1200:-:*:*:*:*:*:*:*

Configuration 13 (hide)

AND
cpe:2.3:o:ruckuswireless:zonedirector_3000_firmware:10.2.1.0.218:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:zonedirector_3000:-:*:*:*:*:*:*:*

Configuration 14 (hide)

AND
cpe:2.3:o:ruckuswireless:zonedirector_5000_firmware:10.0.1.0.151:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:zonedirector_5000:-:*:*:*:*:*:*:*

History

06 Aug 2024, 20:15

Type Values Removed Values Added
References
  • () https://hdhrmi.blogspot.com/2020/03/multiple-vulnerabilities-in-ruckus.html?m=1 -

Information

Published : 2023-01-20 19:15

Updated : 2024-08-06 20:15


NVD link : CVE-2020-22657

Mitre link : CVE-2020-22657

CVE.ORG link : CVE-2020-22657


JSON object : View

Products Affected

ruckuswireless

  • t301n_firmware
  • scg200_firmware
  • zonedirector_1200
  • t301n
  • scg200
  • sz-300_firmware
  • sz-100
  • zonedirector_1200_firmware
  • t301s_firmware
  • r600_firmware
  • t300
  • r500_firmware
  • sz-100_firmware
  • t300_firmware
  • t301s
  • zonedirector_5000_firmware
  • r600
  • r310
  • zonedirector_3000_firmware
  • zonedirector_3000
  • zonedirector_5000
  • vsz_firmware
  • r310_firmware
  • sz-300
  • vsz
  • zonedirector_1100
  • zonedirector_1100_firmware
  • r500
CWE
CWE-287

Improper Authentication