CVE-2025-46118
MEDIUMDescription
An issue was discovered in CommScope Ruckus Unleashed prior to 200.15.6.212.14 and 200.17.7.0.139 and in Ruckus ZoneDirector prior to 10.5.1.0.279, where hard-coded credentials for the ftpuser account provide FTP access to the controller, enabling a remote attacker to upload or retrieve arbitrary files from writable firmware directories and thereby expose sensitive information or compromise the controller.
Is your site exposed to CVE-2025-46118?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| ruckuswireless | ruckus_unleashed |
| ruckuswireless | ruckus_unleashed |
| ruckuswireless | ruckus_zonedirector |
| commscope | ruckus_c110 |
| commscope | ruckus_e510 |
| commscope | ruckus_h320 |
| commscope | ruckus_h350 |
| commscope | ruckus_h510 |
| commscope | ruckus_h550 |
| commscope | ruckus_m510 |
| commscope | ruckus_m510-jp |
| commscope | ruckus_r310 |
| commscope | ruckus_r320 |
| commscope | ruckus_r350 |
| commscope | ruckus_r350e |
| commscope | ruckus_r510 |
| commscope | ruckus_r550 |
| commscope | ruckus_r560 |
| commscope | ruckus_r610 |
| commscope | ruckus_r650 |
| commscope | ruckus_r670 |
| commscope | ruckus_r710 |
| commscope | ruckus_r720 |
| commscope | ruckus_r730 |
| commscope | ruckus_r750 |
| commscope | ruckus_r760 |
| commscope | ruckus_r770 |
| commscope | ruckus_r850 |
| commscope | ruckus_t310c |
| commscope | ruckus_t310n |
| commscope | ruckus_t310s |
| commscope | ruckus_t350c |
| commscope | ruckus_t350d |
| commscope | ruckus_t350se |
| commscope | ruckus_t610 |
| commscope | ruckus_t670 |
| commscope | ruckus_t710 |
| commscope | ruckus_t710s |
| commscope | ruckus_t750 |
| commscope | ruckus_t750se |
| commscope | ruckus_t811-cm |
| commscope | ruckus_t811-cm_\(non-sfp\) |
| commscope | zonedirector_1200 |
References
Frequently Asked Questions
What is CVE-2025-46118? +
How severe is CVE-2025-46118? +
What products are affected by CVE-2025-46118? +
How do I check if I'm vulnerable to CVE-2025-46118? +
Related Vulnerabilities
mcp-neo4j-cypher is an MCP server for executing Cypher queries against Neo4j databases. In versions prior to 0.6.0, the read_only mode …
Horilla is a free and open source Human Resource Management System (HRMS). In 1.5.0, an insecure direct object reference in …
Horilla is a free and open source Human Resource Management System (HRMS). In 1.5.0, an insecure direct object reference in …
mailcow: dockerized is an open source groupware/email suite based on docker. In versions prior to 2026-03b, no administrator verification takes …
vantage6 is an open-source infrastructure for privacy preserving analysis. Prior to version 5.0.0, malicious algorithms can potentially access other algorithms …
A vulnerability in the JCE editor extension for Joomla allows the creation of new editor profiles for unauthenticated users, ultimately …