← Back

Rg Ew1800gx Pro Firmware

rg-ew1800gx_pro_firmware

Vendor: Ruijie • 3 CVEs

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Ruijie
3Rg Ew1800gx Firmware
Rg Ew1800gx Pro FirmwareRg Ew300n Firmware
Dec 23, 2025
Dec 11, 2025
N/A· v4
8.8 HIGH· v3
N/A· v2
OS Command Injection vulnerability in Ruijie RG-EW1800GX PRO B11P226_EW1800GX-PRO_10223117 allowing attackers to execute arbitrary commands via a crafted POST request to the module_get in file /usr/local/lua/dev_sta/netw...Show more
OS Command Injection vulnerability in Ruijie RG-EW1800GX PRO B11P226_EW1800GX-PRO_10223117 allowing attackers to execute arbitrary commands via a crafted POST request to the module_get in file /usr/local/lua/dev_sta/networkConnect.lua.Show less
1Ruijie
2Rg Ew1800gx Pro Firmware
Rg Ew300n Firmware
Jan 27, 2026
Dec 11, 2025
N/A· v4
8.8 HIGH· v3
N/A· v2
OS Command Injection vulnerability in Ruijie RG-EW1800GX PRO B11P226_EW1800GX-PRO_10223117 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_config/c...Show more
OS Command Injection vulnerability in Ruijie RG-EW1800GX PRO B11P226_EW1800GX-PRO_10223117 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_config/config_retain.lua.Show less
1Ruijie
96Rg Eap101 Firmware
Rg Eap101 V2 FirmwareRg Eap102(f) Firmware+93 more
Nov 21, 2024
Aug 17, 2023
N/A· v4
8.8 HIGH· v3
N/A· v2
A command injection vulnerability in RG-EW series home routers and repeaters v.EW_3.0(1)B11P219, RG-NBS and RG-S1930 series switches v.SWITCH_3.0(1)B11P219, RG-EG series business VPN routers v.EG_3.0(1)B11P219, EAP and R...Show more
A command injection vulnerability in RG-EW series home routers and repeaters v.EW_3.0(1)B11P219, RG-NBS and RG-S1930 series switches v.SWITCH_3.0(1)B11P219, RG-EG series business VPN routers v.EG_3.0(1)B11P219, EAP and RAP series wireless access points v.AP_3.0(1)B11P219, and NBC series wireless controllers v.AC_3.0(1)B11P219 allows an authorized attacker to execute arbitrary commands on remote devices by sending a POST request to /cgi-bin/luci/api/cmd via the remoteIp field.Show less