mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-31 10:09:29 +02:00
21 lines
785 B
Markdown
21 lines
785 B
Markdown
### [CVE-2020-26879](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-26879)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
Ruckus vRioT through 1.5.1.0.21 has an API backdoor that is hardcoded into validate_token.py. An unauthenticated attacker can interact with the service API by using a backdoor value as the Authorization header.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- https://adepts.of0x.cc
|
|
- https://adepts.of0x.cc/ruckus-vriot-rce/
|
|
- https://support.ruckuswireless.com/documents
|
|
- https://x-c3ll.github.io
|
|
|
|
#### Github
|
|
- https://github.com/alphaSeclab/sec-daily-2020
|
|
|