漏洞描述
Ruckus Unleashed is susceptible to the Installation page exposure due to misconfiguration.
id: ruckus-unleashed-install
info:
name: Ruckus Unleashed Exposed Installation
author: ritikchaddha
severity: high
description: Ruckus Unleashed is susceptible to the Installation page exposure due to misconfiguration.
metadata:
verified: true
max-request: 1
shodan-query: title:"Setup Wizard" html:"/ruckus"
tags: misconfig,ruckus,unleashed,install,vuln
http:
- method: GET
path:
- "{{BaseURL}}/admin/wizard.jsp"
matchers-condition: and
matchers:
- type: word
words:
- '<title>Setup Wizard'
- '/ruckus'
condition: and
- type: status
status:
- 200
# digest: 490a00463044022070f35760fb7fbe160499a532f3ff5b2a316212acfe827cf3c910e240d85e6aed02204695f4c8d3660d9d81961c188209ece80cad02913f72a6a2c28f5a4cf89519e3:922c64590222798bb761d5b6d8e72950