CommScope Ruckus IoT Controller 1.7.1.0 Web Application Directory Traversal
Posted by deepcore on May 28, 2021 – 7:31 pm
A Python script (web.py) for a Dockerized webservice contains a directory traversal vulnerability, which can be leveraged by an authenticated attacker to view the contents of directories on the IoT Controller.
Post a reply
You must be logged in to post a comment.