Security Advisory

CVE-2025-56089

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-12-11 00:00:00
Last updated 2025-12-12 17:35:48
Assigner mitre
State PUBLISHED

Description

OS Command Injection vulnerability in Ruijie M18 EW_3.0(1)B11P226_M18_10223116 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_sta/nbr_cwmp.lua.