CVE-2025-56084 | Ruijie RG-EW1800GX PRO POST nbr_cwmp.lua module_set os command injection
A vulnerability described as critical has been identified in Ruijie RG-EW1800GX PRO. Affected by this issue is the function module_set of the file /usr/local/lua/dev_sta/nbr_cwmp.lua of the component POST Handler. Executing manipulation can lead to os command injection.
This vulnerability is registered as CVE-2025-56084. It is possible to launch the attack remotely. No exploit is available.