Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2025-56089
OS Command Injection vulnerability in Ruijie M18 EW_3.0(1)B11P226_M18_10223116 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_sta/nbr_cwmp.lua.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.009
EPSS Ranking
75.7%
CVSS Severity
CVSS v3 Score
8.8
References
https://1drv.ms/f/c/12406a392c92914b/EmXarTTNPwFHjk8lLwQIqj8Ba9nlq-owLMBtEKpBwMrn5A?e=vvi2dM
https://1drv.ms/t/c/12406a392c92914b/Ea56irtVj4dNs59Pzz7fkiIBQeVLjDcMDEXC2FpCQydIZQ?e=70gcOe
https://github.com/flegoity/Ruijie-Multiple-Devices-Vulnerability-Reports-for-CVE/blob/main/CVE-2025-56089.md
Products affected by CVE-2025-56089
Ruijie
»
M18-Ew
»
Version:
N/A
cpe:2.3:h:ruijie:m18-ew:-
Ruijie
»
Rg-Ew300g Pro
»
Version:
N/A
cpe:2.3:h:ruijie:rg-ew300g_pro:-
Ruijie
»
M18-Ew Firmware
»
Version:
3.0(1)b11p226
cpe:2.3:o:ruijie:m18-ew_firmware:3.0(1)b11p226
Ruijie
»
Rg-Ew300g Pro Firmware
»
Version:
ew_3.0(1)b11p219
cpe:2.3:o:ruijie:rg-ew300g_pro_firmware:ew_3.0(1)b11p219
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved