CVE-2025-67304 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

In Ruckus Network Director (RND) < 4.5.0.54, the OVA appliance contains hardcoded credentials for the ruckus PostgreSQL database user. In the default configurat…
Critical CVSS: 9.8

CVE-2025-67304

In Ruckus Network Director (RND) < 4.5.0.54, the OVA appliance contains hardcoded credentials for the ruckus PostgreSQL database user. In the default configuration, the PostgreSQL service is accessible over the network on TCP port 5432. An attacker can use the hardcoded credentials to authenticate remotely, gaining superuser access to the database. This allows creation of administrative users for the web interface, extraction of password hashes, and execution of arbitrary OS commands.
Vendor
Commscope
Product
Ruckus Network Director
CWE
CWE-798
Yayın Tarihi
2026-02-19 20:25:24
Güncelleme
2026-04-03 11:33:50
Source Identifier
cve@mitre.org
KEV Date Added
-

Kategoriler

Referanslar