CVE-2025-56090 | Ruijie RG-EW1200G PRO 1.00/2.00/3.00/4.00 POST config_retain.lua module_set os command injection
A vulnerability, which was classified as critical, was found in Ruijie RG-EW1200G PRO 1.00/2.00/3.00/4.00. Impacted is the function module_set of the file /usr/local/lua/dev_config/config_retain.lua of the component POST Handler. Such manipulation leads to os command injection.
This vulnerability is traded as CVE-2025-56090. The attack may be launched remotely. There is no exploit available.