seclists.org
http://seclists.org/fulldisclosure/2021/May/78 CVE-2021-33216
CRITICAL
Ruckus IoT Controller 1.7.1.0 - Undocumented Backdoor Account
Record summary
CVE-2021-33216 has a selected CVSS score of 9.8 (critical); EIP currently links 1 catalogued exploit.
Description
An issue was discovered in CommScope Ruckus IoT Controller 1.7.1.0 and earlier. An Undocumented Backdoor exists, allowing shell access via a developer account.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBRuckus IoT Controller 1.7.1.0 - Undocumented Backdoor AccountExploitDB exploitby ub3rsickNot analyzed1 file
References
3korelogic.com
https://korelogic.com/advisories.html nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2021-33216