Vulnerability CVE-2023-49225


Published: 2023-12-07   Modified: 2023-12-14

Description:
A cross-site-scripting vulnerability exists in Ruckus Access Point products (ZoneDirector, SmartZone, and AP Solo). If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who is logging in the product. As for the affected products/models/versions, see the information provided by the vendor listed under [References] section or the list under [Product Status] section.

Type:

CWE-79

(Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting'))

 References:
https://support.ruckuswireless.com/security_bulletins/323
https://jvn.jp/en/jp/JVN45891816/

Copyright 2026, cxsecurity.com

 

Back to Top