CVE-2025-56107

8.8

Ruijie · RG-BCR and RG-BCR600W

A command injection vulnerability in Ruijie RG-BCR and RG-BCR600W devices allows authenticated attackers to execute arbitrary system commands via crafted POST requests.

Executive summary

An OS command injection vulnerability in Ruijie network appliances poses a high risk of full system compromise for authenticated users.

Vulnerability

This vulnerability involves an OS command injection flaw located within the submit_wifi function in the common_quick_config controller. The vulnerability requires the attacker to have low-level privileges (authenticated access) to send a malicious POST request that triggers arbitrary command execution on the underlying operating system.

Business impact

The exploitation of this vulnerability allows an attacker to gain full control over the affected Ruijie network appliances. With a CVSS score of 8.8, this flaw represents a significant risk to organizational infrastructure, potentially leading to unauthorized data access, network disruption, or the use of the device as a pivot point for further lateral movement within the corporate network.

Remediation

Immediate Action: Contact Ruijie support or check the official vendor portal for the latest firmware updates addressing this vulnerability.

Proactive Monitoring: Review device access logs for unusual POST requests directed at the common_quick_config endpoint or unauthorized attempts to execute system-level commands.

Compensating Controls: Restrict administrative management interfaces to trusted management subnets and deploy WAF rules to inspect and filter suspicious traffic directed at the administration interface.

Exploitation status

Public Exploit Available: Yes, a published PoC exists, attributed to the research documentation referenced by the CVE.

Analyst recommendation

Given the high CVSS severity and the availability of a proof-of-concept, administrators should prioritize updating their Ruijie devices as soon as an official patch becomes available. Until a patch is applied, limit administrative access to the device to prevent unauthorized users from reaching the vulnerable endpoint.

More Ruijie CVEs

Sources