GHSA-92rf-hxxw-wfvjHighCVSS 9.1
A vulnerability was found in Ruijie RG-EW3000GX EW_3.0(1)B11P380. Affected by this issue is some...
🔗 CVE IDs covered (1)
📋 Description
A vulnerability was found in Ruijie RG-EW3000GX EW_3.0(1)B11P380. Affected by this issue is some unknown functionality of the file /etc/rg_config/admin of the component user_list_note Module. Performing a manipulation of the argument Name results in os command injection. It is possible to initiate the attack remotely. The exploit has been made public and could be used.
🔗 References (7)
- https://nvd.nist.gov/vuln/detail/CVE-2026-92398
- https://github.com/FoundTL/RG-EW3000GX/blob/main/RG-EW3000GX_user_list_note.md
- https://vuldb.com/cve/CVE-2026-92398
- https://vuldb.com/submit/940182
- https://vuldb.com/vuln/405550
- https://vuldb.com/vuln/405550/cti
- https://github.com/advisories/GHSA-92rf-hxxw-wfvj