Vulnerabilities > CVE-2021-33217 - Out-of-bounds Write vulnerability in Commscope Ruckus IOT Controller 1.7.1.0
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
An issue was discovered in CommScope Ruckus IoT Controller 1.7.1.0 and earlier. The Web Application allows Arbitrary Read/Write actions by authenticated users. The API allows an HTTP POST of arbitrary content into any file on the filesystem as root.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |