CVE-2025-56114 | Ruijie M18 3.0 POST config_retain.lua module_set os command injection
A vulnerability was found in Ruijie M18 3.0. It has been rated as critical. The impacted element is the function module_set of the file /usr/local/lua/dev_config/config_retain.lua of the component POST Handler. The manipulation leads to os command injection.
This vulnerability is referenced as CVE-2025-56114. Remote exploitation of the attack is possible. No exploit is available.