CVE-2013-5030
Last modified
CVE-2013-5030 is a vulnerability of currently unknown severity. Ruckus Wireless Zoneflex 2942 devices with firmware 9.6.0.0.267 allow remote attackers to bypass authentication, and subsequently access certain configuration/ and maintenance/ scripts, by constructing a crafted URI after receiving an authentication error for an arbitrary login attempt.. EPSS estimates a 2.12% chance of exploitation in the next 30 days.
Description
Ruckus Wireless Zoneflex 2942 devices with firmware 9.6.0.0.267 allow remote attackers to bypass authentication, and subsequently access certain configuration/ and maintenance/ scripts, by constructing a crafted URI after receiving an authentication error for an arbitrary login attempt.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Ruckuswireless | Zoneflex 2942 Firmware | 9.6.0.0.267 |
| Ruckuswireless | Zoneflex 2942 | All versions |
References
- http://www.kb.cert.org/vuls/id/742932US Government Resource
- http://www.kb.cert.org/vuls/id/742932US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2013-5030?
How severe is CVE-2013-5030?
How do I fix CVE-2013-5030?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2013
- CVE-2013-5024An ActiveX control in NationalInstruments.Help2.dll in Natio…
- CVE-2013-5025An ActiveX control in exlauncher.dll in the Help subsystem i…
- CVE-2013-5026An ActiveX control in lookout650.ocx, lookout660.ocx, and lo…
- CVE-2013-5027Collabtive 1.0 has incorrect access control9.8
- CVE-2013-5028SQL injection vulnerability in IT/hardware-list.dll in Kwoks…
- CVE-2013-5029phpMyAdmin 3.5.x and 4.0.x before 4.0.5 allows remote attack…
- CVE-2013-5031Unspecified vulnerability in Atmail before 6.6.4, and 7.x be…
- CVE-2013-5032Unspecified vulnerability in Atmail before 6.6.4, and 7.x be…
- CVE-2013-5033Unspecified vulnerability in Atmail before 6.6.4, and 7.x be…
- CVE-2013-5034Unspecified vulnerability in Atmail before 6.6.4, and 7.x be…
- CVE-2013-5035Multiple race conditions in HtmlCleaner before 2.6, as used …
- CVE-2013-5036The Square Squash allows remote attackers to execute arbitra…
Are you affected by CVE-2013-5030?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
