CVE-2025-46123 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

An issue was discovered in CommScope Ruckus Unleashed prior to 200.15.6.212.14 and 200.17.7.0.139, and in Ruckus ZoneDirector prior to 10.5.1.0.279, where the a…
High CVSS: 7.2

CVE-2025-46123

An issue was discovered in CommScope Ruckus Unleashed prior to 200.15.6.212.14 and 200.17.7.0.139, and in Ruckus ZoneDirector prior to 10.5.1.0.279, where the authenticated configuration endpoint `/admin/_conf.jsp` writes the Wi-Fi guest password to memory with snprintf using the attacker-supplied value as the format string; a crafted password therefore triggers uncontrolled format-string processing and enables remote code execution on the controller.
Vendor
Ruckuswireless
Product
Ruckus Unleashed
CWE
CWE-134
Yayın Tarihi
2025-07-21 15:15:28
Güncelleme
2025-08-05 17:18:56
Source Identifier
cve@mitre.org
KEV Date Added
-

Kategoriler

Referanslar