Vulnerability Description
Ruckus SmartZone (formerly Virtual SmartCell Gateway or vSCG) 3.5.0, 3.5.1, 3.6.0, and 3.6.1 (Essentials and High Scale) on vSZ, SZ-100, SZ-300, and SCG-200 devices allows remote attackers to obtain sensitive information or modify data.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ruckuswireless | Vsz Firmware | 3.5.0 |
| Ruckuswireless | Vsz | - |
| Ruckuswireless | Scg-200 Firmware | 3.5.0 |
| Ruckuswireless | Scg-200 | - |
| Ruckuswireless | Sz-300 Firmware | 3.5.0 |
| Ruckuswireless | Sz-300 | - |
| Ruckuswireless | Sz-100 Firmware | 3.5.0 |
| Ruckuswireless | Sz-100 | - |
Related Weaknesses (CWE)
References
- https://www.ruckuswireless.com/security/279/view/txtMailing ListVendor Advisory
- https://www.ruckuswireless.com/security/279/view/txtMailing ListVendor Advisory
FAQ
What is CVE-2018-11036?
CVE-2018-11036 is a vulnerability with a CVSS score of 9.1 (CRITICAL). Ruckus SmartZone (formerly Virtual SmartCell Gateway or vSCG) 3.5.0, 3.5.1, 3.6.0, and 3.6.1 (Essentials and High Scale) on vSZ, SZ-100, SZ-300, and SCG-200 devices allows remote attackers to obtain s...
How severe is CVE-2018-11036?
CVE-2018-11036 has been rated CRITICAL with a CVSS base score of 9.1/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2018-11036?
Check the references section above for vendor advisories and patch information. Affected products include: Ruckuswireless Vsz Firmware, Ruckuswireless Vsz, Ruckuswireless Scg-200 Firmware, Ruckuswireless Scg-200, Ruckuswireless Sz-300 Firmware.