OS Command Injection vulnerability in Ruijie RG-EW1800GX PRO B11P226_EW1800GX-PRO_10223117 allowing attackers to execute arbitrary commands via a crafted POST request to the module_get in file /usr/local/lua/dev_sta/networkConnect.lua.
| Software | From | Fixed in |
|---|---|---|
| ruijie / rg-ew1800gx_firmware | 3.0(1)b11p226 | 3.0(1)b11p226.x |
| ruijie / rg-ew300n_firmware | 3.0(1)b11p300 | 3.0(1)b11p300.x |
| ruijie / rg-ew1800gx_pro_firmware | 1.022.3117 | 1.022.3117.x |