RUCKUS Network Director (RND) before 4.5 allows spoofing of an administrator JWT by an attacker who knows the hardcoded value of a certain secret key.
Weakness
The product uses a hard-coded, unchangeable cryptographic key.
Potential Mitigations
References