Beveiligingsadvies

CVE-2025-56110

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-12-11 00:00:00
Laatst bijgewerkt 2025-12-12 17:35:46
Toegewezen door mitre
CVSS-score 8.8
Status PUBLISHED

Beschrijving

OS Command Injection vulnerability in Ruijie RG-BCR RG-BCR860 allowing attackers to execute arbitrary commands via a crafted POST request to the action_deal_update in file /usr/lib/lua/luci/controller/api/rcmsAPI.lua.