CVE-2023-49225

A cross-site-scripting vulnerability exists in Ruckus Access Point products (ZoneDirector, SmartZone, and AP Solo). If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who is logging in the product. As for the affected products/models/versions, see the information provided by the vendor listed under [References] section or the list under [Product Status] section.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:ruckuswireless:r750_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r750:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:ruckuswireless:r650_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r650:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:ruckuswireless:r730_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r730:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:ruckuswireless:t750_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t750:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:ruckuswireless:r510_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r510:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:ruckuswireless:e510_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:e510:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:ruckuswireless:c110_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:c110:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:ruckuswireless:r320_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r320:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:ruckuswireless:h510_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:h510:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:ruckuswireless:h320_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:h320:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:o:ruckuswireless:t305_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t305:-:*:*:*:*:*:*:*

Configuration 12 (hide)

AND
cpe:2.3:o:ruckuswireless:m510_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:m510:-:*:*:*:*:*:*:*

Configuration 13 (hide)

AND
cpe:2.3:o:ruckuswireless:r720_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r720:-:*:*:*:*:*:*:*

Configuration 14 (hide)

AND
cpe:2.3:o:ruckuswireless:r710_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r710:-:*:*:*:*:*:*:*

Configuration 15 (hide)

AND
cpe:2.3:o:ruckuswireless:t710_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t710:-:*:*:*:*:*:*:*

Configuration 16 (hide)

AND
cpe:2.3:o:ruckuswireless:t610_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t610:-:*:*:*:*:*:*:*

Configuration 17 (hide)

AND
cpe:2.3:o:ruckuswireless:r610_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r610:-:*:*:*:*:*:*:*

Configuration 18 (hide)

AND
cpe:2.3:o:ruckuswireless:t310d_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t310d:-:*:*:*:*:*:*:*

Configuration 19 (hide)

AND
cpe:2.3:o:ruckuswireless:t310s_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t310s:-:*:*:*:*:*:*:*

Configuration 20 (hide)

AND
cpe:2.3:o:ruckuswireless:t310n_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t310n:-:*:*:*:*:*:*:*

Configuration 21 (hide)

AND
cpe:2.3:o:ruckuswireless:t310c_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t310c:-:*:*:*:*:*:*:*

Configuration 22 (hide)

AND
cpe:2.3:o:ruckuswireless:t710s_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t710s:-:*:*:*:*:*:*:*

Configuration 23 (hide)

AND
cpe:2.3:o:ruckuswireless:t610s_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t610s:-:*:*:*:*:*:*:*

Configuration 24 (hide)

AND
cpe:2.3:o:ruckuswireless:r550_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r550:-:*:*:*:*:*:*:*

Configuration 25 (hide)

AND
cpe:2.3:o:ruckuswireless:r850_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r850:-:*:*:*:*:*:*:*

Configuration 26 (hide)

AND
cpe:2.3:o:ruckuswireless:t750se_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t750se:-:*:*:*:*:*:*:*

Configuration 27 (hide)

AND
cpe:2.3:o:ruckuswireless:r310_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r310:*:*:*:*:*:*:*:*

Configuration 28 (hide)

AND
cpe:2.3:o:ruckuswireless:r760_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r760:*:*:*:*:*:*:*:*

Configuration 29 (hide)

AND
cpe:2.3:o:ruckuswireless:r760_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r760:*:*:*:*:*:*:*:*

Configuration 30 (hide)

AND
cpe:2.3:o:ruckuswireless:r560_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r560:*:*:*:*:*:*:*:*

Configuration 31 (hide)

AND
cpe:2.3:o:ruckuswireless:h550_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:h550:*:*:*:*:*:*:*:*

Configuration 32 (hide)

AND
cpe:2.3:o:ruckuswireless:h350_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:h350:*:*:*:*:*:*:*:*

Configuration 33 (hide)

AND
cpe:2.3:o:ruckuswireless:t350c_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t350c:*:*:*:*:*:*:*:*

Configuration 34 (hide)

AND
cpe:2.3:o:ruckuswireless:t350d_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t350d:*:*:*:*:*:*:*:*

Configuration 35 (hide)

AND
cpe:2.3:o:ruckuswireless:t350se_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t350se:*:*:*:*:*:*:*:*

Configuration 36 (hide)

AND
cpe:2.3:o:ruckuswireless:r350_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r350:*:*:*:*:*:*:*:*

Configuration 37 (hide)

AND
cpe:2.3:o:ruckuswireless:smartzone_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:smartzone:-:*:*:*:*:*:*:*

Configuration 38 (hide)

AND
cpe:2.3:o:ruckuswireless:zonedirector_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:zonedirector:-:*:*:*:*:*:*:*

History

21 Nov 2024, 08:33

Type Values Removed Values Added
References () https://jvn.jp/en/jp/JVN45891816/ - Third Party Advisory () https://jvn.jp/en/jp/JVN45891816/ - Third Party Advisory
References () https://support.ruckuswireless.com/security_bulletins/323 - Patch, Vendor Advisory () https://support.ruckuswireless.com/security_bulletins/323 - Patch, Vendor Advisory

12 Dec 2023, 17:04

Type Values Removed Values Added
CWE CWE-79
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.1
CPE cpe:2.3:h:ruckuswireless:r310:*:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:t350d_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r710:-:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:t750se_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:t310s_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t750se:-:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:t310c_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r350:*:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:t610_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r730:-:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r560:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t710s:-:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:r730_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t750:-:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:r310_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:r850_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r720:-:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:t310n_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:e510_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:h510:-:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:t610s_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:r550_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t610s:-:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:h350:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r750:-:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:r560_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t310c:-:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t310n:-:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:r760_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:r510_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:zonedirector_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:smartzone_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r550:-:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r760:*:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:r350_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r610:-:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:r750_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r850:-:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t310d:-:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t310s:-:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:smartzone:-:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:r710_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r650:-:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:h350_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:c110_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:m510:-:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:h320:-:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t350c:*:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:r610_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:t305_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:h510_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:r650_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t710:-:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:t310d_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t610:-:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:zonedirector:-:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r510:-:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t350d:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:r320:-:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:h550_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:h320_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:r320_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t305:-:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:t710s_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:m510_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:c110:-:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:t350se_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:h550:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:e510:-:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:t710_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:t750_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ruckuswireless:t350se:*:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:t350c_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ruckuswireless:r720_firmware:*:*:*:*:*:*:*:*
First Time Ruckuswireless t710
Ruckuswireless
Ruckuswireless t610
Ruckuswireless r560
Ruckuswireless r850 Firmware
Ruckuswireless r710
Ruckuswireless r350
Ruckuswireless r710 Firmware
Ruckuswireless r720 Firmware
Ruckuswireless e510
Ruckuswireless smartzone Firmware
Ruckuswireless t750 Firmware
Ruckuswireless r560 Firmware
Ruckuswireless t310c Firmware
Ruckuswireless r650 Firmware
Ruckuswireless r550
Ruckuswireless t750se Firmware
Ruckuswireless r650
Ruckuswireless t305 Firmware
Ruckuswireless zonedirector
Ruckuswireless t350c Firmware
Ruckuswireless h350
Ruckuswireless r610
Ruckuswireless r550 Firmware
Ruckuswireless h350 Firmware
Ruckuswireless t310d
Ruckuswireless t350se Firmware
Ruckuswireless t750se
Ruckuswireless t750
Ruckuswireless r610 Firmware
Ruckuswireless t350c
Ruckuswireless h510
Ruckuswireless t610 Firmware
Ruckuswireless t710 Firmware
Ruckuswireless r730 Firmware
Ruckuswireless h320
Ruckuswireless r850
Ruckuswireless t310n Firmware
Ruckuswireless t350se
Ruckuswireless h550
Ruckuswireless r760 Firmware
Ruckuswireless t710s
Ruckuswireless r730
Ruckuswireless t305
Ruckuswireless m510 Firmware
Ruckuswireless t310n
Ruckuswireless r350 Firmware
Ruckuswireless r310 Firmware
Ruckuswireless r760
Ruckuswireless r750 Firmware
Ruckuswireless t310d Firmware
Ruckuswireless zonedirector Firmware
Ruckuswireless m510
Ruckuswireless t310c
Ruckuswireless t310s Firmware
Ruckuswireless t310s
Ruckuswireless smartzone
Ruckuswireless c110 Firmware
Ruckuswireless r310
Ruckuswireless r720
Ruckuswireless r510
Ruckuswireless r320
Ruckuswireless h510 Firmware
Ruckuswireless e510 Firmware
Ruckuswireless c110
Ruckuswireless t610s
Ruckuswireless t610s Firmware
Ruckuswireless t350d
Ruckuswireless h320 Firmware
Ruckuswireless r750
Ruckuswireless r510 Firmware
Ruckuswireless h550 Firmware
Ruckuswireless r320 Firmware
Ruckuswireless t350d Firmware
Ruckuswireless t710s Firmware
References () https://jvn.jp/en/jp/JVN45891816/ - () https://jvn.jp/en/jp/JVN45891816/ - Third Party Advisory
References () https://support.ruckuswireless.com/security_bulletins/323 - () https://support.ruckuswireless.com/security_bulletins/323 - Patch, Vendor Advisory

07 Dec 2023, 07:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-12-07 07:15

Updated : 2024-11-21 08:33


NVD link : CVE-2023-49225

Mitre link : CVE-2023-49225

CVE.ORG link : CVE-2023-49225


JSON object : View

Products Affected

ruckuswireless

  • r350
  • h510_firmware
  • r610
  • t310s_firmware
  • h550
  • t350d
  • r350_firmware
  • r750_firmware
  • t350d_firmware
  • r560_firmware
  • r730_firmware
  • t610_firmware
  • r320
  • h320
  • t305_firmware
  • m510_firmware
  • t610
  • t710s_firmware
  • r550_firmware
  • c110
  • r310
  • r760_firmware
  • r760
  • e510
  • r720
  • t310c_firmware
  • h320_firmware
  • zonedirector_firmware
  • t310d
  • t750_firmware
  • t610s
  • t350se
  • zonedirector
  • t310n_firmware
  • h350
  • t710
  • smartzone
  • t750se_firmware
  • t610s_firmware
  • r560
  • r650_firmware
  • r510_firmware
  • e510_firmware
  • r750
  • r610_firmware
  • r850
  • t750
  • r710_firmware
  • t305
  • t310d_firmware
  • r850_firmware
  • t350c_firmware
  • r320_firmware
  • r510
  • r730
  • h550_firmware
  • t350c
  • smartzone_firmware
  • r310_firmware
  • t310n
  • r550
  • h510
  • t710s
  • c110_firmware
  • t310c
  • r720_firmware
  • m510
  • t310s
  • r650
  • t710_firmware
  • t750se
  • t350se_firmware
  • h350_firmware
  • r710
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')