CVE-2025-65363
EUVD-2025-20172008.12.2025, 17:16
Authenticated append-style command-injection Ruijie APs (AP_RGOS 11.1.x) allows an authenticated web user to execute appended shell expressions as root, enabling file disclosure, device disruption, and potential network pivoting via the command parameter to the web_action.do endpoint.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| ruijie | rg-ap720-l_firmware | 11.1.0 ≤ 𝑥 ≤ 11.1\(9\)B1P21 |
𝑥
= Vulnerable software versions