CVE-2025-56118 | Ruijie X60 PRO 1.00/2.00 POST nbr_cwmp.lua module_set os command injection
A vulnerability identified as critical has been detected in Ruijie X60 PRO 1.00/2.00. This impacts the function module_set of the file /usr/local/lua/dev_sta/nbr_cwmp.lua of the component POST Handler. This manipulation causes os command injection.
This vulnerability is tracked as CVE-2025-56118. The attack is possible to be carried out remotely. No exploit exists.