CVE-2025-56097: Command Injection
OS Command Injection vulnerability in Ruijie RG-EW1800GX PRO B11P226EW1800GX-PRO10223117 allowing attackers to execute arbitrary commands via a crafted POST request to the moduleset in file /usr/local/lua/devconfig/configretain.lua.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-56097?
CVE-2025-56097 is considered a high severity OS Command Injection vulnerability.
How do I fix CVE-2025-56097?
To fix CVE-2025-56097, ensure that you update the Ruijie RG-EW1800GX PRO firmware to the latest version that mitigates this vulnerability.
What are the potential impacts of CVE-2025-56097?
The potential impacts of CVE-2025-56097 include unauthorized command execution on the affected device, which could lead to data loss or system compromise.
Who is affected by CVE-2025-56097?
CVE-2025-56097 affects users of the Ruijie RG-EW1800GX PRO router models running the specified firmware version.
How can I detect CVE-2025-56097 in my environment?
You can detect CVE-2025-56097 by conducting vulnerability scans specifically designed to identify OS Command Injection vulnerabilities on your Ruijie RG-EW1800GX PRO device.