An issue was discovered in CommScope Ruckus IoT Controller 1.7.1.0 and earlier. There are Hard-coded Web Application Administrator Passwords for the admin and nplus1user accounts.
The product contains hard-coded credentials, such as a password or cryptographic key.
Link | Tags |
---|---|
https://korelogic.com/advisories.html | third party advisory |
https://seclists.org/fulldisclosure/2021/May/75 | third party advisory mailing list |