CyberRota Analysis
AI-GeneratedA critical vulnerability exists in the Ruijie RG-EW3000GX router that allows for OS command injection through the manipulation of the 'Name' argument in the user_list_note module of the /etc/rg_config/admin file. This flaw can be exploited remotely, potentially allowing attackers to execute arbitrary commands on the affected system. Organizations using this router should prioritize immediate remediation to mitigate the risk of exploitation.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
A vulnerability was found in Ruijie RG-EW3000GX EW_3.0(1)B11P380. Affected by this issue is some unknown functionality of the file /etc/rg_config/admin of the component user_list_note Module. Performing a manipulation of the argument Name results in os command injection. It is possible to initiate the attack remotely. The exploit has been made public and could be used.