Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2025-44957

28
FAUCET Score

CVE-2025-44957 describes an authentication bypass vulnerability in Ruckus SmartZone (SZ) versions prior to 6.1.2p3 Refresh Build, allowing attackers to gain unauthorized access using a valid API key and specially crafted HTTP headers. This high-severity flaw (CVSS 8.8) is easily exploitable over the network with low complexity, potentially leading to complete compromise of confidentiality, integrity, and availability. While there is no known active exploitation or public exploit code, the vulnerability has garnered significant community discussion and media coverage, indicating a high level of interest.

Impacted Technologies

VendorProductVersion(s)CPE
< 6.1.2CPE matchmatch criteria
cpe:2.3:o:commscope:ruckus_smartzone_firmware:*:*:*:*:*:*:*:*
6.1.2CPE matchmatch criteria
cpe:2.3:o:commscope:ruckus_smartzone_firmware:6.1.2:-:*:*:*:*:*:*
6.1.2CPE matchmatch criteria
cpe:2.3:o:commscope:ruckus_smartzone_firmware:6.1.2:p2:*:*:*:*:*:*
6.1.2CPE matchmatch criteria
cpe:2.3:o:commscope:ruckus_smartzone_firmware:6.1.2:p3:*:*:*:*:*:*
7.0.0CPE matchmatch criteria
cpe:2.3:o:commscope:ruckus_smartzone_firmware:7.0.0:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

8.5HIGH

CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H

Attack Vector
NETWORK
Attack Complexity
HIGH
Privileges Required
LOW
User Interaction
NONE
Scope
CHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
6.0
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.89%
Probability of exploitation in next 30 days
EPSS Percentile
55.7%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0089 is in the 51st percentile among its peer group of 17,823 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.3 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (2)

nessuspatch availablevia llm_extracted
Fixed in: 1.5
View patch
debianvendor investigatingvia llm_extracted
View patch

Vendor Advisories (2)

debianllm-debian-242df094c5d89fc8

Reported vulnerabilities in RUCKUS SmartZone and RUCKUS Network Director: CVE-2025-44957, CVE-2025-44962 ...

Jul 10, 2025
nessusllm-nessus-4b6d9ef0e5a58e42

Reported vulnerabilities in RUCKUS SmartZone and RUCKUS Network Director: CVE-2025-44957, CVE-2025-44962 ...

Jul 10, 2025

References

kb.cert.org / vuls/id/613753
claroty.com / team82/disclosure-dashboard/cve-2025-44957
Third Party Advisory
kb.cert.org / vuls/id/613753
Third Party AdvisoryUS Government Resource
webresources.commscope.com / download/assets/FAQ+Security+Advisory%3A+ID+20250710/225f44ac3bd311f095821adcaa92e24e
Vendor Advisory