VendorsRuijierg-bcr860all versions
Vulnerabilities

Ruijie RG-BCR860

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2025-56088
OS Command Injection vulnerability in Ruijie RG-BCR RG-BCR860 allowing attackers to execute arbitrary commands via a crafted POST request to the action_service in file /usr/lib/lua/luci/controller/admin/service.lua.
Published 2025-12-11 · Analyzed
8.8EPSS 0.035
CVE-2025-56109
OS Command Injection vulnerability in Ruijie RG-BCR RG-BCR860 allowing attackers to execute arbitrary commands via a crafted POST request to the action_wireless in file /usr/lib/lua/luci/control/admin/wireless.lua.
Published 2025-12-11 · Analyzed
8.8EPSS 0.031
CVE-2025-56110
OS Command Injection vulnerability in Ruijie RG-BCR RG-BCR860 allowing attackers to execute arbitrary commands via a crafted POST request to the action_deal_update in file /usr/lib/lua/luci/controller/api/rcmsAPI.lua.
Published 2025-12-11 · Analyzed
8.8EPSS 0.031
CVE-2025-56111
OS Command Injection vulnerability in Ruijie RG-BCR RG-BCR860 allowing attackers to execute arbitrary commands via a crafted POST request to the network_set_wan_conf in file /usr/lib/lua/luci/controller/admin/netport.lua.
Published 2025-12-11 · Analyzed
8.8EPSS 0.031
CVE-2025-56129
OS Command Injection vulnerability in Ruijie RG-BCR RG-BCR860 allowing attackers to execute arbitrary commands via a crafted POST request to the action_diagnosis in file /usr/lib/lua/luci/controller/admin/diagnosis.lua.
Published 2025-12-11 · Analyzed
8.8EPSS 0.026
CVE-2023-3450
Ruijie RG-BCR860 Network Diagnostic Page os command injection
Published 2023-06-28 · Modified
7.2EPSS 0.508