CVE-2025-56120 | Ruijie X60 PRO 1.00/2.00 POST config_retain.lua module_set os command injection
A vulnerability labeled as critical has been found in Ruijie X60 PRO 1.00/2.00. Affected is the function module_set of the file /usr/local/lua/dev_config/config_retain.lua of the component POST Handler. Such manipulation leads to os command injection.
This vulnerability is listed as CVE-2025-56120. The attack may be performed from remote. There is no available exploit.