Vulnerability index

Browse CVEs

45 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Unleashed CRITICAL 9.8
CVE-2019-19838EPSS 24%

emfd in Ruckus Wireless Unleashed through 200.7.10.102.64 allows remote attackers to execute OS commands via a POST request with the attribute xcmd=g…

Fix: 9.10.2.0.84 / 9.12.3.0.136+
Fix from $2,300 2020-01-23
Unleashed CRITICAL 9.8
CVE-2019-19839

emfd in Ruckus Wireless Unleashed through 200.7.10.102.64 allows remote attackers to execute OS commands via a POST request with the attribute xcmd=i…

Fix: 9.10.2.0.84 / 9.12.3.0.136+
Fix from $2,300 2020-01-23
Unleashed MEDIUM 5.3
CVE-2019-19837

Incorrect access control in the web interface in Ruckus Wireless Unleashed through 200.7.10.102.64 allows remote information disclosure of bin/web.co…

Fix: 9.10.2.0.84 / 9.12.3.0.136+
Fix from $1,600 2020-01-23
Unleashed HIGH 7.5
CVE-2019-19835

SSRF in AjaxRestrictedCmdStat in zap in Ruckus Wireless Unleashed through 200.7.10.102.64 allows a remote denial of service via the server attribute …

Fix: 9.10.2.0.84 / 9.12.3.0.136+
Fix from $1,950 2020-01-23
Unleashed CRITICAL 9.8
CVE-2019-19840

A stack-based buffer overflow in zap_parse_args in zap.c in zap in Ruckus Unleashed through 200.7.10.102.64 allows remote code execution via an unaut…

Fix: 9.10.2.0.84 / 9.12.3.0.136+
Fix from $2,300 2020-01-22
Unleashed CRITICAL 9.8
CVE-2019-19841

emfd in Ruckus Wireless Unleashed through 200.7.10.102.64 allows remote attackers to execute OS commands via a POST request with the attribute xcmd=p…

Fix: 9.10.2.0.84 / 9.12.3.0.136+
Fix from $2,300 2020-01-22
Unleashed CRITICAL 9.8
CVE-2019-19842

emfd in Ruckus Wireless Unleashed through 200.7.10.102.64 allows remote attackers to execute OS commands via a POST request with the attribute xcmd=s…

Fix: 9.10.2.0.84 / 9.12.3.0.136+
Fix from $2,300 2020-01-22
Unleashed CRITICAL 9.8
CVE-2019-19836

AjaxRestrictedCmdStat in zap in Ruckus Wireless Unleashed through 200.7.10.102.64 allows remote code execution via a POST request that uses tools/_rc…

Fix: 9.10.2.0.84 / 9.12.3.0.136+
Fix from $2,300 2020-01-22
Unleashed CRITICAL 9.8
CVE-2019-19843

Incorrect access control in the web interface in Ruckus Wireless Unleashed through 200.7.10.102.64 allows remote credential fetch via an unauthentica…

Fix: 9.10.2.0.84 / 9.12.3.0.136+
Fix from $2,300 2020-01-22
Unleashed HIGH 7.2
CVE-2019-19834

Directory Traversal in ruckus_cli2 in Ruckus Wireless Unleashed through 200.7.10.102.64 allows a remote attacker to jailbreak the CLI via enable->deb…

Fix: 9.10.2.0.84 / 9.12.3.0.136+
Fix from $1,950 2020-01-22
Vsz Firmware CRITICAL 9.1
CVE-2018-11036

Ruckus SmartZone (formerly Virtual SmartCell Gateway or vSCG) 3.5.0, 3.5.1, 3.6.0, and 3.6.1 (Essentials and High Scale) on vSZ, SZ-100, SZ-300, and …

Mitigation only
Fix from $2,300 2018-05-31
R500 Firmware HIGH 8.8
CVE-2017-6229

Ruckus Networks Unleashed AP firmware releases before 200.6.10.1.x and Ruckus Networks Zone Director firmware releases 10.1.0.0.x, 9.10.2.0.x, 9.12.3…

Fix: 200.6.10.1.0+
Fix from $1,950 2018-02-14
Solo Access Point Firmware HIGH 8.8
CVE-2017-6230

Ruckus Networks Solo APs firmware releases R110.x or before and Ruckus Networks SZ managed APs firmware releases R5.x or before contain authenticated…

Mitigation only
Fix from $1,950 2018-02-14
Zonedirector Firmware HIGH 8.8
CVE-2017-6224

Ruckus Wireless Zone Director Controller firmware releases ZD9.x, ZD10.0.0.x, ZD10.0.1.x (less than 10.0.1.0.17 MR1 release) and Ruckus Wireless Unle…

Mitigation only
Fix from $1,950 2017-10-13
Zoneflex 2942 Firmware HIGH 7.2
CVE-2013-5030

Ruckus Wireless Zoneflex 2942 devices with firmware 9.6.0.0.267 allow remote attackers to bypass authentication, and subsequently access certain conf…

Mitigation only
Fix from $1,950 2013-10-16