CVE-2025-69426
Last modified
CVE-2025-69426 is a critical-severity vulnerability rated 10/10 on the CVSS scale. The Ruckus vRIoT IoT Controller firmware versions prior to 3.0.0.0 (GA) contain hardcoded credentials for an operating system user account within an initialization script. The SSH service is network-accessible without IP-based restrictions. EPSS estimates a 0.39% chance of exploitation in the next 30 days.
Description
The Ruckus vRIoT IoT Controller firmware versions prior to 3.0.0.0 (GA) contain hardcoded credentials for an operating system user account within an initialization script. The SSH service is network-accessible without IP-based restrictions. Although the configuration disables SCP and pseudo-TTY allocation, an attacker can authenticate using the hardcoded credentials and establish SSH local port forwarding to access the Docker socket. By mounting the host filesystem via Docker, an attacker can escape the container and execute arbitrary OS commands as root on the underlying vRIoT controller, resulting in complete system compromise.
Metrics
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2025-69426?
How severe is CVE-2025-69426?
How do I fix CVE-2025-69426?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2025
- CVE-2025-69418Issue summary: When using the low-level OCB API directly wit…4
- CVE-2025-69419Issue summary: Calling PKCS12_get_friendlyname() function on…7.4
- CVE-2025-6942The distributed engine versions 8.4.39.0 and earlier of Secr…3.8
- CVE-2025-69420Issue summary: A type confusion vulnerability exists in the …7.5
- CVE-2025-69421Issue summary: Processing a malformed PKCS#12 file can trigg…7.5
- CVE-2025-69425The Ruckus vRIoT IoT Controller firmware versions prior to 3…10
- CVE-2025-69428An issue in Pro-Bit before v1.77.4 allows unauthenticated at…7.5
- CVE-2025-69429The ORICO NAS CD3510 (version V1.9.12 and below) contains an…6.1
- CVE-2025-6943Secret Server version 11.7 and earlier is vulnerable to a SQ…4
- CVE-2025-69430An Incorrect Symlink Follow vulnerability exists in multiple…6.1
- CVE-2025-69431The ZSPACE Q2C NAS contains a vulnerability related to incor…6.1
- CVE-2025-69437PublicCMS v5.202506.d and earlier is vulnerable to stored XS…8.7
Are you affected by CVE-2025-69426?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
