← Vulnerability feed

Vulnerability record · CVE-2025-56077 · published 11 December 2025

CVE-2025-56077: Ruijienetworks reyee os os command injection vulnerability

Ruijienetworks · Reyee Os

OS Command Injection vulnerability in Ruijie RG-RAP2200(E) 247 2200 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_sta/nbr_cwmp.lua.

8.8 CVSS 3.1 High EPSS 2.8% · top 13.9% CWE-78 · OS command injection
8.8CVSS 3.1 base score
2.8%EPSS exploitation probability, 30 days
NoNot in CISA KEV
2Affected product versions listed by NVD
3References, 3 tagged exploit
17 Jun 2026Last modified by NVD

Description

OS Command Injection vulnerability in Ruijie RG-RAP2200(E) 247 2200 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_sta/nbr_cwmp.lua.

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected products

2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2025-56077 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2023-34644Ruijie rg-ew1200r firmware code injection vulnerabilityRemote code execution vulnerability in Ruijie Networks Product: RG-EW series home routers and repeaters EW_3.0(1)B11P204, RG-NBS and RG-S1930 series …EPSS 1.8%9.3CVE-2024-48874Ruijienetworks reyee os server-side request forgery (ssrf) vulnerabilityRuijie Reyee OS versions 2.206.x up to but not including 2.320.x could give attackers the ability to force Ruijie's proxy servers to perform any requ…EPSS 0.60%9.3CVE-2024-47547Ruijienetworks reyee os weak password recovery vulnerabilityRuijie Reyee OS versions 2.206.x up to but not including 2.320.x contains a weak mechanism for its users to change their passwords which leaves authe…EPSS 0.67%9.2CVE-2023-53881Ruijienetworks reyee os cleartext transmission vulnerabilityReyeeOS 1.204.1614 contains an unencrypted CWMP communication vulnerability that allows attackers to intercept and manipulate device communication th…EPSS 0.31%9.2CVE-2024-52324Ruijienetworks reyee os vulnerabilityRuijie Reyee OS versions 2.206.x up to but not including 2.320.x uses an inherently dangerous function which could allow an attacker to send a malici…EPSS 0.69%9.2CVE-2024-46874Ruijienetworks reyee os vulnerabilityRuijie Reyee OS versions 2.206.x up to but not including 2.320.x could allow MQTT clients connecting with device credentials to send messages to some…EPSS 0.40%8.8CVE-2023-38902Ruijie rg-ew1200 firmware command injection vulnerabilityA command injection vulnerability in RG-EW series home routers and repeaters v.EW_3.0(1)B11P219, RG-NBS and RG-S1930 series switches v.SWITCH_3.0(1)B…EPSS 2.6%8.7CVE-2024-45722Ruijienetworks reyee os vulnerabilityRuijie Reyee OS versions 2.206.x up to but not including 2.320.x uses weak credential mechanism that could allow an attacker to easily calculate MQTT…EPSS 0.46%

Source: NIST National Vulnerability Database (record CVE-2025-56077), CISA KEV, FIRST EPSS (scores of 2026-09-28). This page is refreshed as NVD updates the record.