CVE-2025-56108
EUVD-2025-20272711.12.2025, 19:15
OS Command Injection vulnerability in Ruijie X30-PRO X30-PRO-V1_09241521 allowing attackers to execute arbitrary commands via a crafted POST request to the pwdmodify in file /usr/lib/lua/luci/modules/common.lua.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| ruijie | x30_pro_firmware | - |
| ruijie | rg-eap602_firmware | 3.0\(1\)b2p55 |
| ruijie | rg-est350_firmware | 3.0\(1\)b11p221 |
| ruijie | rg-ew300_pro_firmware | 3.0\(1\)b11p219 |
| ruijie | rg-est310_firmware | 3.0\(1\)b11p211 |
𝑥
= Vulnerable software versions
References