Vulnerabilities (CVE)

Filtered by vendor Ruijie Subscribe
Filtered by product Reyee Os
Total 5 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-56083 1 Ruijie 9 Reyee Os, Rg-eap602, Rg-eap602 Firmware and 6 more 2026-02-11 N/A 8.8 HIGH
OS Command Injection vulnerability in Ruijie X30-PRO X30-PRO-V1_09241521 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_sta/nbr_networkId_merge.lua.
CVE-2025-56084 1 Ruijie 9 Reyee Os, Rg-eap602, Rg-eap602 Firmware and 6 more 2026-02-11 N/A 8.8 HIGH
OS Command Injection vulnerability in Ruijie RG-EW1800GX PRO B11P226_EW1800GX-PRO_10223117 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_sta/nbr_cwmp.lua.
CVE-2025-56099 1 Ruijie 9 Reyee Os, Rg-eap602, Rg-eap602 Firmware and 6 more 2026-02-11 N/A 8.8 HIGH
OS Command Injection vulnerability in Ruijie RG-YST AP_3.0(1)B11P280YST250F allowing attackers to execute arbitrary commands via a crafted POST request to the pwdmodify in file /usr/lib/lua/luci/modules/common.lua.
CVE-2025-56113 1 Ruijie 9 Reyee Os, Rg-eap602, Rg-eap602 Firmware and 6 more 2026-02-11 N/A 8.8 HIGH
OS Command Injection vulnerability in Ruijie RG-YST EST, YSTAP_3.0(1)B11P280YST250F V1.xxV2.xx allowing attackers to execute arbitrary commands via a crafted POST request to the pwdmodify in file /usr/lib/lua/luci/modules/common.lua.
CVE-2024-42936 1 Ruijie 2 Reyee Os, Rg-ew300n 2025-12-15 N/A 9.8 CRITICAL
The mqlink.elf is service component in Ruijie RG-EW300N with firmware ReyeeOS 1.300.1422 is vulnerable to Remote Code Execution via a modified MQTT broker message.