Evidence dossier

CVE-2023-25717

Ruckus Wireless Admin through 10.4 allows Remote Code Execution via an unauthenticated HTTP GET Request, as demonstrated by a…

Exploited in the wild (CISA KEV since May 12, 2023). NVD reports CVSS 3.1 9.8. EPSS estimates 98.1% exploit likelihood as of Jul 26, 2026.

89.190.1Priority evidence range
Evidence current through Aug 27, 2026, 6:09 PM UTC

As of Aug 27, 2026

Normalized restatement

Ruckus Wireless Admin through 10.4 allows Remote Code Execution via an unauthenticated HTTP GET Request, as demonstrated by a /forms/doLogin?login_username=admin&password=password$(curl substring.

State
PUBLISHED
Published
Feb 13, 2023
Updated
Oct 21, 2025
Evidence coverage
99%

Evidence chronology

What was known when

Download this view's receipt →
  1. Source dateSource date omittedFirst observed by CASCA
    CISA-ADP

    Record text: CISA ADP Vulnrichment

    Inspect raw assertion
    Field
    container
    Value
    CISA ADP Vulnrichment
    Original evidence ↗
  2. Source dateSource date omittedFirst observed by CASCA
    CVE Program

    Record text: CVE Program Container

    Inspect raw assertion
    Field
    container
    Value
    CVE Program Container
    Original evidence ↗
  3. Source dateSource date omittedFirst observed by CASCA
    mitre

    Record text: Ruckus Wireless Admin through 10.4 allows Remote Code Execution via an unauthenticated HTTP GET Request, as demonstrated by a /forms/doLogin?login_username=admin&password=password$(curl substring.

    Inspect raw assertion
    Field
    container
    Value
    Ruckus Wireless Admin through 10.4 allows Remote Code Execution via an unauthenticated HTTP GET Request, as demonstrated by a /forms/doLogin?login_username=admin&password=password$(curl substring.
    Original evidence ↗
  4. Source dateFirst observed by CASCA
    CISA KEV

    Exploitation cataloged: Multiple Ruckus Wireless Products CSRF and RCE Vulnerability

    Inspect raw assertion
    Field
    observed_exploitation
    Value
    Multiple Ruckus Wireless Products CSRF and RCE Vulnerability
    Original evidence ↗
  5. Source dateFirst observed by CASCA
    FIRST EPSS

    EPSS score: 98.07% probability · 99.91th percentile

    Inspect raw assertion
    Field
    model_probability
    Value
    Probability 0.980690000000; percentile 0.999070000000
    Original evidence ↗
ExploitationCatalog member

CISA KEV · catalog date May 12, 2023 · first observed Jul 19, 2026

Exploit likelihood98.07%

FIRST EPSS · score date Jul 26, 2026 · 99.9th percentile · first observed Jul 27, 2026

SeverityCVSS 9.8

NVD · CVSS 3.1 · first observed Jul 19, 2026 · same-version scores align in this snapshot

Evidence detail

Source limits and decisions

Why each evidence state has this value

casca-unknown-reasons-v1
Exploitation statusEvidence supported

Eligible evidence is present for this bounded claim.

Revision
evidence-policy-v1.1.0
Cutoff
Aug 27, 2026
Resolution
None
Exploit likelihoodEvidence supported

Eligible evidence is present for this bounded claim.

Revision
evidence-policy-v1.1.0
Cutoff
Aug 27, 2026
Resolution
None
Severity assessmentEvidence supported

Eligible evidence is present for this bounded claim.

Revision
casca-direct-cvss-eligibility-v1
Cutoff
Aug 27, 2026
Resolution
None
Affected productsSource-reported scope

The cited source assertion is retained while canonical product linkage remains open.

Revision
casca-factor-d-obligations-v1
Cutoff
Aug 27, 2026
Resolution
Resolve identity

Source comparison

Who said what

CISA-ADPIndependent enrichment
Record text

CISA ADP Vulnrichment

Inspect raw assertion
Field
container
Value
CISA ADP Vulnrichment
Source dateSource date omittedFirst observed by CASCAOriginal evidence ↗
CVE ProgramDerivative copy
Record text

CVE Program Container

Inspect raw assertion
Field
container
Value
CVE Program Container
Source dateSource date omittedFirst observed by CASCAOriginal evidence ↗
mitreOriginal assertion
Record text

Ruckus Wireless Admin through 10.4 allows Remote Code Execution via an unauthenticated HTTP GET Request, as demonstrated by a /forms/doLogin?login_username=admin&password=password$(curl substring.

Inspect raw assertion
Field
container
Value
Ruckus Wireless Admin through 10.4 allows Remote Code Execution via an unauthenticated HTTP GET Request, as demonstrated by a /forms/doLogin?login_username=admin&password=password$(curl substring.
Source dateSource date omittedFirst observed by CASCAOriginal evidence ↗
CISA KEVOriginal assertion
Exploitation cataloged

Multiple Ruckus Wireless Products CSRF and RCE Vulnerability

Inspect raw assertion
Field
observed_exploitation
Value
Multiple Ruckus Wireless Products CSRF and RCE Vulnerability
Source dateFirst observed by CASCAOriginal evidence ↗
FIRST EPSSOriginal assertion
EPSS score

98.07% probability · 99.91th percentile

Inspect raw assertion
Field
model_probability
Value
Probability 0.980690000000; percentile 0.999070000000
Source dateFirst observed by CASCAOriginal evidence ↗

Applicability

Cited product scope

Trace impact →
103Underlying assertions
61Canonical products
15Target assertions
88Constraint assertions

Grouped from 16 configuration nodes in this exact snapshot. Visual grouping is navigational; asset exposure and root cause require cited evidence.

Identity source boundaries
  • Cpe dictionary1,775,266 records · observed through 2026-07-21T06:45:29.809Z27d65b0f-b718-4b4f-bb79-c47c68d09dfa
  • Cpe match643,502 records · observed through 2026-07-21T08:13:17.697Z955dae73-7302-438b-aee1-058d7cc5d48e

62 scope groups

mitre · source assertedn/an/aDirect source scope
Affected: n/a
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "n/a"}]
NVD CPE · OPERATING SYSTEMcommscoperuckus_smartzone_firmwareVulnerable target · 3 assertions
Any version (unconstrained) (< 5.2.1.3); Any version (unconstrained) (< 5.2.1.3.1695); Version 6.1.0.0.935Canonical identity product-259b83b86db353bdbd96a70996084140e0d96f0a7e54278f62ef6fba72d9f9f3Linked exact
Scope supported
Inspect raw assertions
  1. cpe:2.3:o:commscope:ruckus_smartzone_firmware:6.1.0.0.935:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    5 · node/0 · match 1
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    98787afd-705a-4eca-a735-1412ed55b71c
  2. cpe:2.3:o:commscope:ruckus_smartzone_firmware:*:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    4 · node/0 · match 1
    Logic
    OR
    Version bounds
    through excluding 5.2.1.3
    Match ID
    3dc1aff4-766d-4dff-b7a0-39efe686f33b
  3. cpe:2.3:o:commscope:ruckus_smartzone_firmware:*:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    7 · node/0 · match 1
    Logic
    OR
    Version bounds
    through excluding 5.2.1.3.1695
    Match ID
    e2d11729-5815-46ac-a2b6-e1570fdbed8e
NVD CPE · HARDWAREruckuswirelesse510Environmental constraint · 2 assertions
Version not applicableCanonical identity product-fbf824e6964df916b5f1bac1d4a43a2d88a7a81a8a6dff38900173167f90e434Linked exact
Scope constrained
Inspect raw assertions
  1. cpe:2.3:h:ruckuswireless:e510:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    1 · node/1 · match 0
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    fbf5c92c-c889-4732-bb00-e6d55613e410
  2. cpe:2.3:h:ruckuswireless:e510:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    0 · node/1 · match 0
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    fbf5c92c-c889-4732-bb00-e6d55613e410
NVD CPE · HARDWAREruckuswirelessh320Environmental constraint · 2 assertions
Version not applicableCanonical identity product-5e3fa78d02d219eff5e7f0ef591a8f17d54d440af8db96ee0cf4c53d7aeb7cdeLinked exact
Scope constrained
Inspect raw assertions
  1. cpe:2.3:h:ruckuswireless:h320:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    0 · node/1 · match 1
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    282c3a1d-711c-4415-b9be-a9b518204aeb
  2. cpe:2.3:h:ruckuswireless:h320:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    1 · node/1 · match 1
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    282c3a1d-711c-4415-b9be-a9b518204aeb
NVD CPE · HARDWAREruckuswirelessh350Environmental constraint · 1 assertions
Version not applicableCanonical identity product-20256511161fa1f9ae2cbc4f2240a5bc6a848ad4665f5b4f2027720a798bcccdLinked exact
Scope constrained
Inspect raw assertion
  1. cpe:2.3:h:ruckuswireless:h350:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    0 · node/1 · match 2
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    d19e1647-dfdd-4ae9-8118-b6e27796f158
NVD CPE · HARDWAREruckuswirelessh500Environmental constraint · 1 assertions
Version not applicableCanonical identity product-28377a2cd3741a5f13fe3eca8569f2128dd6074897f34fafedc536588e65610aLinked exact
Scope constrained
Inspect raw assertion
  1. cpe:2.3:h:ruckuswireless:h500:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    2 · node/1 · match 0
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    dbe5491d-89a5-4690-8374-0cd27852ccb2
NVD CPE · HARDWAREruckuswirelessh510Environmental constraint · 2 assertions
Version not applicableCanonical identity product-040dc2e2d014ef8527e09861f824c39fbfdba7f59bf87737266ad0bff5c47942Linked exact
Scope constrained
Inspect raw assertions
  1. cpe:2.3:h:ruckuswireless:h510:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    1 · node/1 · match 2
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    cb1fab48-786a-4fb3-ab6d-3118e94e68c7
  2. cpe:2.3:h:ruckuswireless:h510:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    0 · node/1 · match 3
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    cb1fab48-786a-4fb3-ab6d-3118e94e68c7
NVD CPE · HARDWAREruckuswirelessh550Environmental constraint · 1 assertions
Version not applicableCanonical identity product-c1e8f08a9ca6d73116608679767f8a7e3ee2c3ec74a2228ffd08427b7544c994Linked exact
Scope constrained
Inspect raw assertion
  1. cpe:2.3:h:ruckuswireless:h550:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    0 · node/1 · match 4
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    3aece922-479c-4c3e-9905-1c742dce9769
NVD CPE · HARDWAREruckuswirelessm510Environmental constraint · 2 assertions
Version not applicableCanonical identity product-602e0ee9e6dbc4e41f108e86c16d24155da8c50338b9323fa6e9a1baba967c4eLinked exact
Scope constrained
Inspect raw assertions
  1. cpe:2.3:h:ruckuswireless:m510:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    0 · node/1 · match 5
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    d4ae7200-4090-4b81-a22f-b8553a014d21
  2. cpe:2.3:h:ruckuswireless:m510:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    1 · node/1 · match 3
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    d4ae7200-4090-4b81-a22f-b8553a014d21
NVD CPE · HARDWAREruckuswirelessm510-jpEnvironmental constraint · 1 assertions
Version not applicableCanonical identity product-1327396b6cf49622cb39b2c9cd4b320eec8c6c0b1efea787d73cf660d6d8fc0fLinked exact
Scope constrained
Inspect raw assertion
  1. cpe:2.3:h:ruckuswireless:m510-jp:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    6 · node/1 · match 0
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    007de148-e501-4a35-8f10-acd28ff2819b
NVD CPE · HARDWAREruckuswirelessp300Environmental constraint · 1 assertions
Version not applicableCanonical identity product-2624134735571923d88da1f4e45b6c404da5662437d4104d065d7bd0f414a596Linked exact
Scope constrained
Inspect raw assertion
  1. cpe:2.3:h:ruckuswireless:p300:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    6 · node/1 · match 1
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    12e3f2da-3a4b-421a-ace0-a764b9b57ff9
NVD CPE · HARDWAREruckuswirelessq410Environmental constraint · 1 assertions
Version not applicableCanonical identity product-464772f1cbdae674c1397b6b60f438935a16e6257101a101ca774bc992b9ba28Linked exact
Scope constrained
Inspect raw assertion
  1. cpe:2.3:h:ruckuswireless:q410:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    6 · node/1 · match 2
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    eb66e1a9-d6b5-455f-b6c0-fd2ef45cf509
NVD CPE · HARDWAREruckuswirelessq710Environmental constraint · 1 assertions
Version not applicableCanonical identity product-c7c5a99c787e271a567bf0197c659ff297e46002f449080cf00409eaf1e431ceLinked exact
Scope constrained
Inspect raw assertion
  1. cpe:2.3:h:ruckuswireless:q710:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    6 · node/1 · match 3
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    54d44a0e-66c0-4522-90ac-16f7d5738d8f
NVD CPE · HARDWAREruckuswirelessq910Environmental constraint · 1 assertions
Version not applicableCanonical identity product-046367f9b40cb113f0f1a666459c49bdc259280051adc7571797dc44ac2188f7Linked exact
Scope constrained
Inspect raw assertion
  1. cpe:2.3:h:ruckuswireless:q910:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    6 · node/1 · match 4
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    80c949d8-d53c-4b5b-a851-51fafab0011d
NVD CPE · HARDWAREruckuswirelessr300Environmental constraint · 1 assertions
Version not applicableCanonical identity product-e3f539e5f113d8e5cc4f9d208fd12b9691c401934e9a1dd36eb30e50ee65cc50Linked exact
Scope constrained
Inspect raw assertion
  1. cpe:2.3:h:ruckuswireless:r300:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    2 · node/1 · match 1
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    c7fdec42-0d72-4841-b0fe-b0b0b00b6557
NVD CPE · HARDWAREruckuswirelessr310Environmental constraint · 2 assertions
Version not applicableCanonical identity product-b81216c361eeae757c7dff6fdaac3f1a629507cc85919306df7f1fbe8c77ae13Linked exact
Scope constrained
Inspect raw assertions
  1. cpe:2.3:h:ruckuswireless:r310:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    1 · node/1 · match 4
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    40d3129e-4c02-484f-96b6-59d76f787d21
  2. cpe:2.3:h:ruckuswireless:r310:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    0 · node/1 · match 6
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    40d3129e-4c02-484f-96b6-59d76f787d21
NVD CPE · HARDWAREruckuswirelessr320Environmental constraint · 2 assertions
Version not applicableCanonical identity product-c2a1147c6c31096872cc94737dcb7a0b5fd923bc97bdda2062afc748e3ece8e9Linked exact
Scope constrained
Inspect raw assertions
  1. cpe:2.3:h:ruckuswireless:r320:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    1 · node/1 · match 5
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    93ce3224-85d2-4039-8f24-bb503dfd42c2
  2. cpe:2.3:h:ruckuswireless:r320:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    0 · node/1 · match 7
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    93ce3224-85d2-4039-8f24-bb503dfd42c2
NVD CPE · HARDWAREruckuswirelessr350Environmental constraint · 1 assertions
Version not applicableCanonical identity product-f96121d1478f52e292d29e8182eb40a1bb82c22a722e73fcacd38aebc812c163Linked exact
Scope constrained
Inspect raw assertion
  1. cpe:2.3:h:ruckuswireless:r350:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    0 · node/1 · match 8
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    728b95f9-bd5b-4c0b-adbd-0b30aac868ec
NVD CPE · HARDWAREruckuswirelessr500Environmental constraint · 1 assertions
Version not applicableCanonical identity product-8372da8a2149dc521131b8389c58764fd7f41a953041e6251b681117d8cd5467Linked exact
Scope constrained
Inspect raw assertion
  1. cpe:2.3:h:ruckuswireless:r500:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    1 · node/1 · match 6
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    9bbdbe9c-be4b-4ed6-af62-8fe484c519e2
NVD CPE · HARDWAREruckuswirelessr510Environmental constraint · 2 assertions
Version not applicableCanonical identity product-c8ebd9a08cc45edfa4e299066c86158b2f632871353c11c368af7f89fb9ecdb5Linked exact
Scope constrained
Inspect raw assertions
  1. cpe:2.3:h:ruckuswireless:r510:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    1 · node/1 · match 7
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    80b2e8cc-eace-4a80-9eb1-dadab8034415
  2. cpe:2.3:h:ruckuswireless:r510:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    0 · node/1 · match 9
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    80b2e8cc-eace-4a80-9eb1-dadab8034415
NVD CPE · HARDWAREruckuswirelessr550Environmental constraint · 2 assertions
Version not applicableCanonical identity product-f103de9572120f8a21b1e3715f25639c26ddd925a47f66f7cdfa4742203c1e80Linked exact
Scope constrained
Inspect raw assertions
  1. cpe:2.3:h:ruckuswireless:r550:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    0 · node/1 · match 10
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    215024f9-c68e-4919-9fd5-215cf900a830
  2. cpe:2.3:h:ruckuswireless:r550:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    1 · node/1 · match 8
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    215024f9-c68e-4919-9fd5-215cf900a830
NVD CPE · HARDWAREruckuswirelessr560Environmental constraint · 1 assertions
Version not applicableCanonical identity product-edcd396ffc6e70f0485288d91d95203385acc728ba5cdfaad8c9973ed5bee40bLinked exact
Scope constrained
Inspect raw assertion
  1. cpe:2.3:h:ruckuswireless:r560:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    3 · node/1 · match 0
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    aaded848-caf5-4ef6-bac6-6be35cce7815
NVD CPE · HARDWAREruckuswirelessr600Environmental constraint · 1 assertions
Version not applicableCanonical identity product-f2f3705ba1c1e8e1c8c496a20c8c2e895ffb4050bcfb5ff317092000fb5966a0Linked exact
Scope constrained
Inspect raw assertion
  1. cpe:2.3:h:ruckuswireless:r600:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    1 · node/1 · match 9
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    5421b1d7-e630-4bda-ba34-7dd8d0738df4
NVD CPE · HARDWAREruckuswirelessr610Environmental constraint · 2 assertions
Version not applicableCanonical identity product-643178db9764a5c81b3bbb0cc61ac7e65696d28e8bd0061ae1eb035e3dbfc0cdLinked exact
Scope constrained
Inspect raw assertions
  1. cpe:2.3:h:ruckuswireless:r610:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    1 · node/1 · match 10
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    4244947c-538e-4b83-b4f4-3dd4f3c22e83
  2. cpe:2.3:h:ruckuswireless:r610:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    0 · node/1 · match 11
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    4244947c-538e-4b83-b4f4-3dd4f3c22e83
NVD CPE · HARDWAREruckuswirelessr650Environmental constraint · 2 assertions
Version not applicableCanonical identity product-07805df05e2aa718ad0e661cce790c75ec997379d2ea6aaf3c84eb2e37284c6dLinked exact
Scope constrained
Inspect raw assertions
  1. cpe:2.3:h:ruckuswireless:r650:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    1 · node/1 · match 11
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    951bda12-0294-472a-9292-f60ac6d4292b
  2. cpe:2.3:h:ruckuswireless:r650:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    0 · node/1 · match 12
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    951bda12-0294-472a-9292-f60ac6d4292b

Affected-product evidence

Accepted scope and product mapping

3 canonical links · 1 source-reported links

Mapping establishedEvidence supported

vendor-e76f767076f5d4b795eb5f90b412c1a158b7efb46e8e75c108d9bc3548dad836 · product-259b83b86db353bdbd96a70996084140e0d96f0a7e54278f62ef6fba72d9f9f3

Source class
Nvd cpe vulnerable target
Assertions
3
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
3fa9c341-e372-4742-860f-f59f0047d46c541f40f3-b6f9-4716-9581-0c344fe2faf2919ab7d8-b04b-4257-9200-ada84d77c19d
Mapping establishedEvidence supported

vendor-18ac5e9d77fbdad066a47fe3e80e65f66e212d8fd1c95e9ebab55beda034c52e · product-65e389b8f19bd946ff8778218d1e6e01b92914432d70681afd7a736aa5754e34

Source class
Nvd cpe vulnerable target
Assertions
8
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
18f94fb6-4015-43d6-8a49-d058e6cbeef51cc1ab06-ab68-4d40-b6f9-54cebd9792d42200d3a2-7a75-4d55-a1b2-780b69efe42071721801-f7fb-4745-9a8c-2f3f2d66e9d172598b20-ec43-46f7-9c65-201107d1b2247e261bb1-e5e0-4b0c-99ec-b3efb30786a6a536bdb4-1d3d-497e-8402-f3bc85edea49f0bb41cd-119f-4ade-abbc-c4411d3192f8
Mapping establishedEvidence supported

vendor-18ac5e9d77fbdad066a47fe3e80e65f66e212d8fd1c95e9ebab55beda034c52e · product-e2d8c4facb659040699a0ed405d4940e83e834dca382e57477dcbd2e8fc85ab4

Source class
Nvd cpe vulnerable target
Assertions
4
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
33dc689f-32f2-4827-a870-b72bc22bf5c35bf0df1a-be18-464d-881b-6cc017c3ac337ba852d2-af88-4464-8e3e-c1fa8dedc41691596ae9-4956-4a4b-a06d-82fd0a998195
Source-reported scopeSource-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Vendor specified only by source · Product specified only by source

Source class
Direct cve affected
Assertions
1
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
e58053e0-0440-4266-9aa9-ab8d8b3886d8

Assessments

CVSS by origin

9.8
NVDCVSS 3.1 · role Primary · priority eligiblevalid_matchCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
9.8
CVE Program sourceCVSS 3.1 · role Secondary · priority eligiblevalid_matchCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
9.8
CISA-ADPCVSS 3.1 · role unknown · display onlyDirect record assessment retained outside normalized eligibilityCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Direct CVE/CNA normalized decisions

9.8Priority eligible

CISA-ADP

CVSS 3.1 · Secondary · Independent enrichment · rank 2

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Validation
Valid match
Recomputed
9.8
Decision reason
Evidence supported
Policy
casca-direct-cvss-eligibility-v1

Assessments are retained side by side under closed precedence. Cascade never averages CVSS.

Evidence boundaries

  • KEV membership is authoritative for the catalog, not proof of exposure in any environment.
  • EPSS is a dated model probability and not an individual-environment prediction.
  • Affected or fixed status applies only to the exact cited product and version scope; remaining scope stays source-scoped.
  • NVD-carried upstream facts remain derivative; independent corroboration requires a separately authored source.
  • Only NVD metrics validated under the generation-bound calculator are Public Priority eligible; direct CVE record metrics remain display-only.
  • NVD CVSS source eligibility is closed: NVD-authored, exact record-source, or registered same-CVE container origin; unmapped sources remain display-only.
  • Core replay supports the active and immediately prior generation; retrospective valid-at replay is deferred.
  • OSV aggregation and OSV-converted NVD material are not independent corroboration.
  • Red Hat facts are vendor assertions for the exact supplied products.
  • Nonmembership and not-yet-observed states are not proof of safety.