Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In RUCKUS SmartZone (SZ) before 6.1.2p3 Refresh Build, OS command injection can occur via an IP address field provided by an authenticated user.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Vulnerability Type
OS命令中使用的特殊元素转义处理不恰当(OS命令注入)
Vulnerability Title
RUCKUS SmartZone 操作系统命令注入漏洞
Vulnerability Description
RUCKUS SmartZone是RUCKUS公司的一个网络控制器。 RUCKUS SmartZone 6.1.2p3 Refresh Build之前版本存在操作系统命令注入漏洞,该漏洞源于经过身份验证的用户可通过IP地址字段进行OS命令注入。
CVSS Information
N/A
Vulnerability Type
N/A