Lucene search

K
cvelistMitreCVELIST:CVE-2021-33217
HistoryJul 07, 2021 - 2:07 p.m.

CVE-2021-33217

2021-07-0714:07:25
mitre
www.cve.org
2
commscope ruckus iot
controller
arbitrary actions
authenticated users
http post
filesystem
root

AI Score

9.2

Confidence

High

EPSS

0.002

Percentile

52.8%

An issue was discovered in CommScope Ruckus IoT Controller 1.7.1.0 and earlier. The Web Application allows Arbitrary Read/Write actions by authenticated users. The API allows an HTTP POST of arbitrary content into any file on the filesystem as root.

AI Score

9.2

Confidence

High

EPSS

0.002

Percentile

52.8%

Related for CVELIST:CVE-2021-33217