High severity8.5NVD Advisory· Published Aug 4, 2025· Updated Jun 17, 2026
CVE-2025-44957
CVE-2025-44957
Description
Ruckus SmartZone (SZ) before 6.1.2p3 Refresh Build allows authentication bypass via a valid API key and crafted HTTP headers.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
9cpe:2.3:o:commscope:ruckus_smartzone_firmware:*:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:o:commscope:ruckus_smartzone_firmware:*:*:*:*:*:*:*:*range: <6.1.2
- cpe:2.3:o:commscope:ruckus_smartzone_firmware:6.1.2:-:*:*:*:*:*:*
- cpe:2.3:o:commscope:ruckus_smartzone_firmware:6.1.2:p2:*:*:*:*:*:*
- cpe:2.3:o:commscope:ruckus_smartzone_firmware:6.1.2:p3:*:*:*:*:*:*
- cpe:2.3:o:commscope:ruckus_smartzone_firmware:7.0.0:*:*:*:*:*:*:*
- cpe:2.3:o:commscope:ruckus_smartzone_firmware:7.1.0:*:*:*:*:*:*:*
- cpe:2.3:a:commscope:ruckus_network_director:*:*:*:*:*:*:*:*Range: <4.5.0.51
Patches
Vulnerability mechanics
References
4- claroty.com/team82/disclosure-dashboard/cve-2025-44957nvdThird Party Advisory
- kb.cert.org/vuls/id/613753nvdThird Party AdvisoryUS Government Resource
- webresources.commscope.com/download/assets/FAQ+Security+Advisory%3A+ID+20250710/225f44ac3bd311f095821adcaa92e24envdVendor Advisory
- www.kb.cert.org/vuls/id/613753nvd
News mentions
0No linked articles in our index yet.