CVE-2025-46117
CRITICALRuckus Unleashed < 200.15.6.212.14 and ZoneDirector < 10.5.1.0.279 - Authenticated OS Command Injection via .ap_debug.sh
Title source: llmDescription
An issue was discovered in CommScope Ruckus Unleashed prior to 200.15.6.212.14 and 200.17.7.0.139, and in Ruckus ZoneDirector prior to 10.5.1.0.279, where a hidden debug script `.ap_debug.sh` invoked from the restricted CLI does not properly sanitize its input, allowing an authenticated attacker to execute arbitrary commands as root on the controller or specified target.
References (2)
Core 2
Core References
Exploit, Third Party Advisory
https://sector7.computest.nl/post/2025-07-ruckus-unleashed/
Scores
CVSS v3
9.1
EPSS
0.0076
EPSS Percentile
50.4%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
CISA SSVC
Vulnrichment
Exploitation
poc
Automatable
no
Technical Impact
total
Details
CWE
CWE-78
Status
published
Products (2)
ruckuswireless/ruckus_unleashed
< 200.15.6.212.14
ruckuswireless/ruckus_zonedirector
< 10.5.1.0.279
Published
Jul 21, 2025
Tracked Since
Feb 18, 2026