Ruijie Rg-Ew1200 Firmware vulnerabilities
6 known vulnerabilities affecting ruijie/rg-ew1200_firmware.
Total CVEs
6
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH5
Vulnerabilities
Page 1 of 1
CVE-2025-56086P2HIGHCVSS 8.8v3.0\(1\)b11p2272025-12-11
CVE-2025-56086 [HIGH] CWE-78 CVE-2025-56086: OS Command Injection vulnerability in Ruijie RG-EW1200 EW_3.0(1)B11P227_EW1200_11130208RG-EW1200 V1.
OS Command Injection vulnerability in Ruijie RG-EW1200 EW_3.0(1)B11P227_EW1200_11130208RG-EW1200 V1.00 allowing attackers to execute arbitrary commands via a crafted POST request to the module_get in file /usr/local/lua/dev_sta/networkConnect.lua.
nvd
CVE-2025-56085P2HIGHCVSS 8.8v3.0\(1\)b11p2272025-12-11
CVE-2025-56085 [HIGH] CWE-78 CVE-2025-56085: OS Command Injection vulnerability in Ruijie RG-EW1200 EW_3.0(1)B11P227_EW1200_11130208RG-EW1200 V1.
OS Command Injection vulnerability in Ruijie RG-EW1200 EW_3.0(1)B11P227_EW1200_11130208RG-EW1200 V1.00 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_config/config_retain.lua.
nvd
CVE-2025-56120P2HIGHCVSS 8.8v3.0\(1\)b11p3012025-12-11
CVE-2025-56120 [HIGH] CWE-78 CVE-2025-56120: OS Command Injection vulnerability in Ruijie X60 PRO X60_10212014RG-X60 PRO V1.00/V2.00 allowing att
OS Command Injection vulnerability in Ruijie X60 PRO X60_10212014RG-X60 PRO V1.00/V2.00 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_config/config_retain.lua.
nvd
CVE-2023-34644P2CRITICALCVSS 9.8v3.0\(1\)b11p2042023-07-31
CVE-2023-34644 [CRITICAL] CWE-94 CVE-2023-34644: Remote code execution vulnerability in Ruijie Networks Product: RG-EW series home routers and repeat
Remote code execution vulnerability in Ruijie Networks Product: RG-EW series home routers and repeaters EW_3.0(1)B11P204, RG-NBS and RG-S1930 series switches SWITCH_3.0(1)B11P218, RG-EG series business VPN routers EG_3.0(1)B11P216, EAP and RAP series wireless access points AP_3.0(1)B11P218, NBC series wireless controllers AC_3.0(1)B11P86 allows una
nvd
CVE-2023-38902P2HIGHCVSS 8.8v3.0\(1\)b11p2192023-08-17
CVE-2023-38902 [HIGH] CWE-77 CVE-2023-38902: A command injection vulnerability in RG-EW series home routers and repeaters v.EW_3.0(1)B11P219, RG-
A command injection vulnerability in RG-EW series home routers and repeaters v.EW_3.0(1)B11P219, RG-NBS and RG-S1930 series switches v.SWITCH_3.0(1)B11P219, RG-EG series business VPN routers v.EG_3.0(1)B11P219, EAP and RAP series wireless access points v.AP_3.0(1)B11P219, and NBC series wireless controllers v.AC_3.0(1)B11P219 allows an authorized attac
nvd
CVE-2025-56124P3HIGHCVSS 7.8v3.0\(1\)b11p3012025-12-11
CVE-2025-56124 [HIGH] CWE-78 CVE-2025-56124: OS Command Injection vulnerability in Ruijie X60 PRO X60_10212014RG-X60 PRO V1.00/V2.00 allowing att
OS Command Injection vulnerability in Ruijie X60 PRO X60_10212014RG-X60 PRO V1.00/V2.00 allowing attackers to execute arbitrary commands via a crafted POST request to the module_get in file /usr/local/lua/dev_sta/networkConnect.lua.
nvd