CVE-2025-63735
MEDIUMRuckus Unleashed 200.13.6.1.319 - XSS
Title source: llmDescription
A reflected Cross site scripting (XSS) vulnerability in Ruckus Unleashed 200.13.6.1.319 via the name parameter to the the captive-portal endpoint selfguestpass/guestAccessSubmit.jsp.
Exploits (1)
nomisec
WRITEUP
1 stars
by huthx · poc
https://github.com/huthx/CVE-2025-63735-Ruckus-Unleashed-Reflected-XSS
Scores
CVSS v3
6.1
EPSS
0.0003
EPSS Percentile
7.9%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Details
CWE
CWE-79
Status
published
Products (1)
ruckuswireless/ruckus_unleashed
200.13.6.1.319
Published
Nov 25, 2025
Tracked Since
Feb 18, 2026