Ruckus Wireless Zoneflex 2942 devices with firmware 9.6.0.0.267 allow remote attackers to bypass authentication, and subsequently access certain configuration/ and maintenance/ scripts, by constructing a crafted URI after receiving an authentication error for an arbitrary login attempt.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Zoneflex_2942__firmware | Ruckuswireless | 9.6.0.0.267 (including) | 9.6.0.0.267 (including) |