CNNVD-202508-229 Information

CNNVD ID

CNNVD-202508-229

CVE-2025-44960

  • CNNVD Published: 2025-08-04

Description (Chinese)

RUCKUS SmartZone是RUCKUS公司的一个网络控制器。 RUCKUS SmartZone 6.1.2p3 Refresh Build之前版本存在操作系统命令注入漏洞,该漏洞源于API路由中的OS命令注入,可能导致安全风险。

Description (English)

RUCKUS SmartZone is a network controller for RUCKUS. The previous version of the RUCKUS SmartZone 6.1.2p3 Refresh Build contained a loophole in the operating system command, which originated from an OS command in the API route and could lead to security risks.

Hazard Level

Low

Vulnerability Type

操作系统命令注入

Affected Vendor

RUCKUS

Published

2025-08-04

Last Modified

2026-02-24

References

https://claroty.com/team82/disclosure-dashboard/cve-2025-44960 https://kb.cert.org/vuls/id/613753 https://webresources.commscope.com/download/assets/FAQ+Security+Advisory%3A+ID+20250710/225f44ac3bd311f095821adcaa92e24e https://access.redhat.com/security/cve/cve-2025-44960

Patch

https://support.ruckuswireless.com/software/4247

Share on: