CVE-2025-44962
MEDIUMDescription
RUCKUS SmartZone (SZ) before 6.1.2p3 Refresh Build allows ../ directory traversal to read files.
Is your site exposed to CVE-2025-44962?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| commscope | ruckus_smartzone_firmware |
| commscope | ruckus_smartzone_firmware |
| commscope | ruckus_smartzone_firmware |
| commscope | ruckus_smartzone_firmware |
| commscope | ruckus_smartzone_firmware |
| commscope | ruckus_smartzone_firmware |
| commscope | ruckus_virtual_smartzone |
| commscope | ruckus_virtual_smartzone-federal |
| commscope | ruckus_c110 |
| commscope | ruckus_e510 |
| commscope | ruckus_h320 |
| commscope | ruckus_h350 |
| commscope | ruckus_h510 |
| commscope | ruckus_m510 |
| commscope | ruckus_r320 |
| commscope | ruckus_r510 |
| commscope | ruckus_r560 |
| commscope | ruckus_r610 |
| commscope | ruckus_r710 |
| commscope | ruckus_r720 |
| commscope | ruckus_r730 |
| commscope | ruckus_r750 |
| commscope | ruckus_smartzone_100 |
| commscope | ruckus_smartzone_100-d |
| commscope | ruckus_smartzone_144 |
| commscope | ruckus_smartzone_144-federal |
| commscope | ruckus_smartzone_300 |
| commscope | ruckus_smartzone_300-federal |
| commscope | ruckus_t310c |
| commscope | ruckus_t310d |
| commscope | ruckus_t310n |
| commscope | ruckus_t310s |
| commscope | ruckus_t350se |
| commscope | ruckus_t750 |
| commscope | ruckus_t750se |
| commscope | ruckus_network_director |
References
Frequently Asked Questions
What is CVE-2025-44962? +
How severe is CVE-2025-44962? +
What products are affected by CVE-2025-44962? +
How do I check if I'm vulnerable to CVE-2025-44962? +
Related Vulnerabilities
Webmin before 2.640 does not safely construct a filename for saving of an attachment within the mailboxes component. This occurs …
Emlog is an open source website building system. In 2.6.13 and earlier, the article publishing interface stores a path-traversal template …
esm.sh is a nobuild content delivery network(CDN) for modern web development. In 136 and earlier, a path-traversal flaw in the …
The WP Compress – Image Optimizer [All-In-One] plugin for WordPress is vulnerable to Directory Traversal in all versions up to, …
Emlog Pro 2.5.20 has an arbitrary file deletion vulnerability. This vulnerability stems from the admin/template.php component and the admin/plugin.php component. …
The /charms endpoint on a Juju controller lacked sufficient authorization checks, allowing any user with an account on the controller …