PT-2025-50675 · Ruijie · Rg-Ew1800Gx

CVE-2025-56106

·

Published

2025-12-11

·

Updated

2025-12-14

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Ruijie RG-EW1800GX version B11P226 EW1800GX 10223121
Description An issue exists in Ruijie RG-EW1800GX version B11P226 EW1800GX 10223121 that allows attackers to execute arbitrary commands. This is possible through a crafted POST request to the module set within the /usr/local/lua/dev sta/nbr cwmp.lua file.
Recommendations Apply updates to address the issue in the nbr cwmp.lua file.

Exploit

Fix

OS Command Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-56106

Affected Products

Rg-Ew1800Gx