Unrated severityNVD Advisory· Published Dec 8, 2025· Updated Dec 8, 2025
CVE-2025-65363
CVE-2025-65363
Description
Authenticated append-style command-injection Ruijie APs (AP_RGOS 11.1.x) allows an authenticated web user to execute appended shell expressions as root, enabling file disclosure, device disruption, and potential network pivoting via the command parameter to the web_action.do endpoint.
Affected products
2- Ruijie/APsdescription
- Range: 11.1.x
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.