VendorsCommscoperuckus_zoneflex_r500all versions
Vulnerabilities

Commscope Ruckus ZoneFlex R500

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2020-8830
CSRF in login.asp on Ruckus devices allows an attacker to access the panel, and use SSRF to perform scraping or other analysis via the SUBCA-1 field on the Wireless Admin screen.
Published 2020-05-05 · Modified
8.8EPSS 0.005
CVE-2020-7983
A CSRF issue in login.asp on Ruckus R500 3.4.2.0.384 devices allows remote attackers to access the panel or conduct SSRF attacks.
Published 2020-05-05 · Modified
8.1EPSS 0.006
CVE-2020-8033
Ruckus R500 3.4.2.0.384 devices allow XSS via the index.asp Device Name field.
Published 2020-05-05 · Modified
6.1EPSS 0.007