CVE-2025-56120
EUVD-2025-20271611.12.2025, 19:15
OS Command Injection vulnerability in Ruijie X60 PRO X60_10212014RG-X60 PRO V1.00/V2.00 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_config/config_retain.lua.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| ruijie | rg-x60_pro_firmware | 1.021.2014 |
| ruijie | rg-ew1200_firmware | 3.0\(1\)b11p301 |
𝑥
= Vulnerable software versions
References