Ruijie RG-YST
- YSTAP_3.0(1)B11P280YST250F V1.xxV2.xx
A command injection vulnerability has been identified in several Ruijie Networks products, including the RG-YST, RG-EST310 V2, RG-EST350 V2, RG-EW300 PRO, and specific AP models. This vulnerability allows authenticated remote attackers to execute arbitrary commands on the affected device. The issue arises in the Lua service 'pwdmodify', where crafted POST requests can be used to inject and execute commands on the operating system.
Exploitation of this vulnerability allows for arbitrary command execution on the affected device.
To reproduce this vulnerability, send a POST request to the 'pwdmodify' endpoint in the 'common.lua' module. The request must be crafted to include the desired command injection payload. This can be done using tools like curl or Postman, or through a custom script that automates the process.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.