Vulnerabilities > Ruckuswireless > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-12-07 CVE-2023-49225 Cross-site Scripting vulnerability in Ruckuswireless products
A cross-site-scripting vulnerability exists in Ruckus Access Point products (ZoneDirector, SmartZone, and AP Solo).
network
low complexity
ruckuswireless CWE-79
6.1
2023-01-20 CVE-2020-22661 Unspecified vulnerability in Ruckuswireless products
In Ruckus R310 10.5.1.0.199, Ruckus R500 10.5.1.0.199, Ruckus R600 10.5.1.0.199, Ruckus T300 10.5.1.0.199, Ruckus T301n 10.5.1.0.199, Ruckus T301s 10.5.1.0.199, SmartCell Gateway 200 (SCG200) before 3.6.2.0.795, SmartZone 100 (SZ-100) before 3.6.2.0.795, SmartZone 300 (SZ300) before 3.6.2.0.795, Virtual SmartZone (vSZ) before 3.6.2.0.795, ZoneDirector 1100 9.10.2.0.130, ZoneDirector 1200 10.2.1.0.218, ZoneDirector 3000 10.2.1.0.218, ZoneDirector 5000 10.0.1.0.151, a vulnerability allows attackers to erase the backup secondary official image and write secondary backup unauthorized image.
network
low complexity
ruckuswireless
6.5
2022-06-27 CVE-2020-21161 Cross-site Scripting vulnerability in Ruckuswireless Zonedirector Firmware 9.8.3.0
Cross Site Scripting (XSS) vulnerability in Ruckus Wireless ZoneDirector 9.8.3.0.
network
low complexity
ruckuswireless CWE-79
6.1
2020-07-28 CVE-2020-13913 Cross-site Scripting vulnerability in Ruckuswireless Unleashed Firmware
An XSS issue in emfd in Ruckus Wireless Unleashed through 200.7.10.102.92 allows a remote attacker to execute JavaScript code via an unauthenticated crafted HTTP request.
network
low complexity
ruckuswireless CWE-79
6.1
2020-01-23 CVE-2019-19837 Unspecified vulnerability in Ruckuswireless Unleashed and Zonedirector 1200 Firmware
Incorrect access control in the web interface in Ruckus Wireless Unleashed through 200.7.10.102.64 allows remote information disclosure of bin/web.conf via HTTP requests.
network
low complexity
ruckuswireless
5.3
2020-01-19 CVE-2020-7234 Cross-site Scripting vulnerability in Ruckuswireless R310 Firmware 104.0.0.0.1347
Ruckus ZoneFlex R310 104.0.0.0.1347 devices allow Stored XSS via the SSID field on the Configuration > Radio 2.4G > Wireless X screen (after a successful login to the super account).
network
low complexity
ruckuswireless CWE-79
4.8