cbcvebase.

Ruijie Rg-Eap602 Firmware vulnerabilities

8 known vulnerabilities affecting ruijie/rg-eap602_firmware.

Total CVEs
8
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH8

Vulnerabilities

Page 1 of 1
CVE-2025-56084P2HIGHCVSS 8.8v3.0\(1\)b2p552025-12-11
CVE-2025-56084 [HIGH] CWE-78 CVE-2025-56084: OS Command Injection vulnerability in Ruijie RG-EW1800GX PRO B11P226_EW1800GX-PRO_10223117 allowing OS Command Injection vulnerability in Ruijie RG-EW1800GX PRO B11P226_EW1800GX-PRO_10223117 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_sta/nbr_cwmp.lua.
nvd
CVE-2025-56083P2HIGHCVSS 8.8v3.0\(1\)b2p552025-12-11
CVE-2025-56083 [HIGH] CWE-78 CVE-2025-56083: OS Command Injection vulnerability in Ruijie X30-PRO X30-PRO-V1_09241521 allowing attackers to execu OS Command Injection vulnerability in Ruijie X30-PRO X30-PRO-V1_09241521 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_sta/nbr_networkId_merge.lua.
nvd
CVE-2025-56093P2HIGHCVSS 8.8v3.0\(1\)b2p552025-12-11
CVE-2025-56093 [HIGH] CWE-78 CVE-2025-56093: OS Command Injection vulnerability in Ruijie X30-PRO X30-PRO-V1_09241521 allowing attackers to execu OS Command Injection vulnerability in Ruijie X30-PRO X30-PRO-V1_09241521 allowing attackers to execute arbitrary commands via a crafted POST request to the setWisp in file /usr/lib/lua/luci/modules/wireless.lua.
nvd
CVE-2025-56108P2HIGHCVSS 8.8v3.0\(1\)b2p552025-12-11
CVE-2025-56108 [HIGH] CWE-78 CVE-2025-56108: OS Command Injection vulnerability in Ruijie X30-PRO X30-PRO-V1_09241521 allowing attackers to execu OS Command Injection vulnerability in Ruijie X30-PRO X30-PRO-V1_09241521 allowing attackers to execute arbitrary commands via a crafted POST request to the pwdmodify in file /usr/lib/lua/luci/modules/common.lua.
nvd
CVE-2025-56099P2HIGHCVSS 8.8v3.0\(1\)b2p552025-12-11
CVE-2025-56099 [HIGH] CWE-78 CVE-2025-56099: OS Command Injection vulnerability in Ruijie RG-YST AP_3.0(1)B11P280YST250F allowing attackers to ex OS Command Injection vulnerability in Ruijie RG-YST AP_3.0(1)B11P280YST250F allowing attackers to execute arbitrary commands via a crafted POST request to the pwdmodify in file /usr/lib/lua/luci/modules/common.lua.
nvd
CVE-2025-56095P2HIGHCVSS 8.8v3.0\(1\)b2p552025-12-11
CVE-2025-56095 [HIGH] CWE-78 CVE-2025-56095: OS Command Injection vulnerability in Ruijie RG-EW1200G PRO RG-EW1200G PRO V1.00/V2.00/V3.00/V4.00 a OS Command Injection vulnerability in Ruijie RG-EW1200G PRO RG-EW1200G PRO V1.00/V2.00/V3.00/V4.00 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_sta/nbr_cwmp.lua.
nvd
CVE-2025-56113P2HIGHCVSS 8.8v3.0\(1\)b2p552025-12-11
CVE-2025-56113 [HIGH] CWE-78 CVE-2025-56113: OS Command Injection vulnerability in Ruijie RG-YST EST, YSTAP_3.0(1)B11P280YST250F V1.xxV2.xx allow OS Command Injection vulnerability in Ruijie RG-YST EST, YSTAP_3.0(1)B11P280YST250F V1.xxV2.xx allowing attackers to execute arbitrary commands via a crafted POST request to the pwdmodify in file /usr/lib/lua/luci/modules/common.lua.
nvd
CVE-2023-38902P2HIGHCVSS 8.8v3.0\(1\)b11p2192023-08-17
CVE-2023-38902 [HIGH] CWE-77 CVE-2023-38902: A command injection vulnerability in RG-EW series home routers and repeaters v.EW_3.0(1)B11P219, RG- A command injection vulnerability in RG-EW series home routers and repeaters v.EW_3.0(1)B11P219, RG-NBS and RG-S1930 series switches v.SWITCH_3.0(1)B11P219, RG-EG series business VPN routers v.EG_3.0(1)B11P219, EAP and RAP series wireless access points v.AP_3.0(1)B11P219, and NBC series wireless controllers v.AC_3.0(1)B11P219 allows an authorized attac
nvd
Ruijie Rg-Eap602 Firmware vulnerabilities | cvebase