A vulnerability in the web-based interface of the RUCKUS Cloudpath product on version 5.12 build 5538 or before to could allow a remote, unauthenticated attacker to execute persistent XSS and CSRF attacks against a user of the admin management interface. A successful attack, combined with a certain admin activity, could allow the attacker to gain full admin privileges on the exploited system.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-02T20:29:32.614Z
Reserved: 2023-10-16T00:00:00
Link: CVE-2023-45992
No data.
Status : Modified
Published: 2023-10-19T19:15:16.223
Modified: 2024-11-21T08:27:43.217
Link: CVE-2023-45992
No data.
OpenCVE Enrichment
No data.