CVE-2025-56092: Command Injection
OS Command Injection vulnerability in Ruijie X30 PRO V1 X30-PRO-V109241521 allowing attackers to execute arbitrary commands via a crafted POST request to the moduleget in file /usr/local/lua/devsta/networkConnect.lua.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-56092?
CVE-2025-56092 is classified as a critical severity vulnerability due to its potential to allow arbitrary command execution.
How do I fix CVE-2025-56092?
To fix CVE-2025-56092, you should apply the latest security updates provided by Ruijie for the X30 PRO V1 model.
What are the potential impacts of CVE-2025-56092?
The impacts of CVE-2025-56092 include unauthorized access and control over the affected device, leading to data breaches or system compromise.
Who is affected by CVE-2025-56092?
CVE-2025-56092 affects users of the Ruijie X30 PRO V1 device running the specific vulnerable version.
Can CVE-2025-56092 be exploited remotely?
Yes, CVE-2025-56092 can be exploited remotely through crafted POST requests to the vulnerable endpoint.