CVE-2025-46122

CRITICAL

Ruckus Unleashed < 200.15.6.212.14 and 200.17.7.0.139 - Authenticated Remote Code Execution via Diagnostics API

Title source: llm
STIX 2.1

Description

An issue was discovered in CommScope Ruckus Unleashed prior to 200.15.6.212.14 and 200.17.7.0.139, where the authenticated diagnostics API endpoint `/admin/_cmdstat.jsp` passes attacker-controlled input to the shell without adequate validation, enabling a remote attacker to specify a target by MAC address and execute arbitrary commands as root.

References (2)

Core 2

Scores

CVSS v3 9.1
EPSS 0.0112
EPSS Percentile 61.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact total

Details

CWE
CWE-77
Status published
Products (2)
ruckuswireless/ruckus_unleashed < 200.15.6.212.14
ruckuswireless/ruckus_zonedirector < 10.5.1.0.279
Published Jul 21, 2025
Tracked Since Feb 18, 2026