Stored Cross-Site Scripting in Ruckus ZoneFlex R310 Devices
CVE-2020-7234
4.8MEDIUM
What is CVE-2020-7234?
Ruckus ZoneFlex R310 devices are susceptible to stored Cross-Site Scripting (XSS) through the SSID field within the Configuration settings. This vulnerability allows attackers, after gaining access to the super account, to inject malicious scripts. When other users view the affected SSID, their browsers execute these scripts, potentially compromising user data and session integrity.