CVE-2025-56089 | Ruijie M18 3.0 POST nbr_cwmp.lua module_set os command injection
A vulnerability, which was classified as critical, has been found in Ruijie M18 3.0. This issue affects the function module_set of the file /usr/local/lua/dev_sta/nbr_cwmp.lua of the component POST Handler. This manipulation causes os command injection.
This vulnerability appears as CVE-2025-56089. The attack may be initiated remotely. There is no available exploit.