High severity7.2NVD Advisory· Published Dec 8, 2025· Updated Jul 5, 2026
CVE-2025-65363
CVE-2025-65363
Description
Authenticated append-style command-injection Ruijie APs (AP_RGOS 11.1.x) allows an authenticated web user to execute appended shell expressions as root, enabling file disclosure, device disruption, and potential network pivoting via the command parameter to the web_action.do endpoint.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Ruijie/APsdescription
- Range: 11.1.x
- cpe:2.3:o:ruijie:rg-ap720-l_firmware:*:*:*:*:*:*:*:*Range: >=11.1.0,<=11.1\(9\)B1P21
Patches
Vulnerability mechanics
References
1- github.com/tmogg/security-advisories/blob/main/CVE-2025-65363/README.mdnvdThird Party Advisory
News mentions
0No linked articles in our index yet.