Access Control Flaw in Ruckus Wireless Unleashed Products
CVE-2019-19843
9.8CRITICAL
What is CVE-2019-19843?
An access control vulnerability exists in the web interface of Ruckus Wireless Unleashed, allowing remote attackers to conduct unauthorized actions. This flaw enables an unauthenticated HTTP request to exploit a symlink configuration in the /tmp directory and gain access to sensitive credentials. The issue arises from insufficient access controls that can lead to potential data breaches if exploited.