CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. Its EPSS score suggests a 45.1% probability of exploitation in the next 30 days. Exploitation may require the attacker to be authenticated.
CVE
CVE-2020-26879
Severity
CRITICAL
CVSS
9.8
EPSS
45.08%
Original NVD Description
Ruckus vRioT through 1.5.1.0.21 has an API backdoor that is hardcoded into validate_token.py. An unauthenticated attacker can interact with the service API by using a backdoor value as the Authorization header.
Related CVEs
Other vulnerabilities affecting the same vendor(s)