CVE-2020-13917

CRITICAL

Ruckus Wireless Unleashed < 200.7.10.102.92 - Remote Command Injection via rkscli

Title source: llm
STIX 2.1

Description

rkscli in Ruckus Wireless Unleashed through 200.7.10.92 allows a remote attacker to achieve command injection and jailbreak the CLI via a crafted CLI command. This affects C110, E510, H320, H510, M510, R320, R310, R500, R510 R600, R610, R710, R720, R750, T300, T301n, T301s, T310c, T310d, T310n, T310s, T610, T710, and T710s devices.

References (1)

Core 1
Core References
Vendor Advisory x_refsource_confirm
https://support.ruckuswireless.com/security_bulletins/304

Scores

CVSS v3 9.8
EPSS 0.0208
EPSS Percentile 79.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-77
Status published
Products (1)
ruckuswireless/unleashed_firmware < 200.7.10.102.92
Published Jul 28, 2020
Tracked Since Feb 18, 2026