Home / os / win10

CommScope Ruckus IoT Controller 1.7.1.0 Web Application Directory Traversal

Posted on 27 May 2021

A Python script (web.py) for a Dockerized webservice contains a directory traversal vulnerability, which can be leveraged by an authenticated attacker to view the contents of directories on the IoT Controller.

 

TOP