Vulnerabilities > Ruckuswireless > Zonedirector 1200 Firmware > Critical

DATE CVE VULNERABILITY TITLE RISK
2020-01-22 CVE-2019-19843 Insufficiently Protected Credentials vulnerability in Ruckuswireless Unleashed and Zonedirector 1200 Firmware
Incorrect access control in the web interface in Ruckus Wireless Unleashed through 200.7.10.102.64 allows remote credential fetch via an unauthenticated HTTP request involving a symlink with /tmp and web/user/wps_tool_cache.
network
low complexity
ruckuswireless CWE-522
critical
9.8