Vulnerabilities > CVE-2021-33217 - Out-of-bounds Write vulnerability in Commscope Ruckus IOT Controller
Attack vector
NETWORK Attack complexity
LOW Privileges required
SINGLE Confidentiality impact
COMPLETE Integrity impact
COMPLETE Availability impact
COMPLETE Summary
An issue was discovered in CommScope Ruckus IoT Controller 1.7.1.0 and earlier. The Web Application allows Arbitrary Read/Write actions by authenticated users. The API allows an HTTP POST of arbitrary content into any file on the filesystem as root.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |