CVE-2025-46119 is a medium-severity vulnerability affecting CommScope Ruckus Unleashed and ZoneDirector products, where an authenticated request to a specific management endpoint or access to system configuration files can disclose the administrator password in an easily reversible obfuscated form. This network-based vulnerability requires low privileges and no user interaction, potentially leading to low impact on confidentiality, integrity, and availability. There is currently no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 200.15.6.212.14CPE matchmatch criteria | cpe:2.3:a:ruckuswireless:ruckus_unleashed:*:*:*:*:*:*:*:* | ||
>= 200.17, < 200.17.7.0.139CPE matchmatch criteria | cpe:2.3:a:ruckuswireless:ruckus_unleashed:*:*:*:*:*:*:*:* | ||
< 10.5.1.0.279CPE matchmatch criteria | cpe:2.3:a:ruckuswireless:ruckus_zonedirector:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.