CNNVD-202512-2157 Information

CNNVD ID

CNNVD-202512-2157

CVE-2025-56083

  • CNNVD Published: 2025-12-11

Description (Chinese)

Ruijie X30 PRO是中国锐捷(Ruijie)公司的一款家用无线路由器。 Ruijie X30 PRO存在安全漏洞,该漏洞源于文件/usr/local/lua/dev_sta/nbr_networkId_merge.lua中的module_set函数未验证输入,可能导致OS命令注入攻击。

Description (English)

Ruijie X30 PRO is a home-free router for Ruijie. Ruijie X30 PRO has a security loophole which originates from the Module set function in the document/usr/local/lua/dev sta/nbr networkId merge.lua, which does not verify the input and may lead to an OS command injection into the attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

锐捷

Published

2025-12-11

Last Modified

2026-02-24

References

https://1drv.ms/f/c/12406a392c92914b/EtGIxwWujwxBvQhL9wgnUIwBkg-mndJJX07Igr6d0cic-g?e=4KJbWY https://1drv.ms/t/c/12406a392c92914b/EciYj-O9Oi1PgNsZdTao0iwBub3gdfqA3safE0A4I9foYg?e=Mi39JB https://github.com/flegoity/Ruijie-Multiple-Devices-Vulnerability-Reports-for-CVE/blob/main/CVE-2025-56083.md

Share on: