CVE-2025-56077

OS Command Injection vulnerability in Ruijie RG-RAP2200(E) 247 2200 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_sta/nbr_cwmp.lua.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:ruijienetworks:reyee_os:2.280.0:*:*:*:*:*:*:*
cpe:2.3:h:ruijie:rg-eap162\(g\):-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:ruijienetworks:reyee_os:2.280.0:*:*:*:*:*:*:*
cpe:2.3:h:ruijie:rg-rap1260:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:ruijie:rg-rap2200\(e\)_firmware:3.0\(1\)b11p247:*:*:*:*:*:*:*
cpe:2.3:h:ruijie:rg-rap2200\(e\):-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-12-11 18:16

Updated : 2025-12-26 14:40


NVD link : CVE-2025-56077

Mitre link : CVE-2025-56077

CVE.ORG link : CVE-2025-56077


JSON object : View

Products Affected

ruijienetworks

  • reyee_os

ruijie

  • rg-rap1260
  • rg-rap2200\(e\)_firmware
  • rg-eap162\(g\)
  • rg-rap2200\(e\)
CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')