Home

Description

OS Command Injection vulnerability in Ruijie RG-BCR RG-BCR600W allowing attackers to execute arbitrary commands via a crafted POST request to the get_wanobj in file /usr/lib/lua/luci/controller/admin/common.lua.

PUBLISHED Reserved 2025-08-16 | Published 2025-12-11 | Updated 2025-12-12 | Assigner mitre

References

1drv.ms/...Mw6SlNh-ZJpY_9SAsBq2iDi88TFdFdA1Am3PdfCQ?e=YeLYxb

1drv.ms/...8NW45AgBgScwGNiPABEK0YLvNQFgNtqLaWAhCPVw?e=cLDW5t

github.com/...ty-Reports-for-CVE/blob/main/CVE-2025-56127.md

cve.org (CVE-2025-56127)

nvd.nist.gov (CVE-2025-56127)

Download JSON

Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.