Critical severity9.0NVD Advisory· Published Aug 4, 2025· Updated Jun 17, 2026
CVE-2025-44954
CVE-2025-44954
Description
RUCKUS SmartZone (SZ) before 6.1.2p3 Refresh Build has a hardcoded SSH private key for a root-equivalent user account.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8cpe:2.3:o:commscope:ruckus_smartzone_firmware:*:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:o:commscope:ruckus_smartzone_firmware:*:*:*:*:*:*:*:*range: <6.1.2
- cpe:2.3:o:commscope:ruckus_smartzone_firmware:6.1.2:-:*:*:*:*:*:*
- cpe:2.3:o:commscope:ruckus_smartzone_firmware:6.1.2:p2:*:*:*:*:*:*
- cpe:2.3:o:commscope:ruckus_smartzone_firmware:6.1.2:p3:*:*:*:*:*:*
- cpe:2.3:o:commscope:ruckus_smartzone_firmware:7.0.0:*:*:*:*:*:*:*
- cpe:2.3:o:commscope:ruckus_smartzone_firmware:7.1.0:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
3- claroty.com/team82/disclosure-dashboard/cve-2025-44954nvdThird Party Advisory
- kb.cert.org/vuls/id/613753nvdThird Party AdvisoryUS Government Resource
- webresources.commscope.com/download/assets/FAQ+Security+Advisory%3A+ID+20250710/225f44ac3bd311f095821adcaa92e24envdVendor Advisory
News mentions
0No linked articles in our index yet.