Skip to content
Remote OS Command Injection Vulnerabilities in Ruijie RG-EW3000GX

Remote OS Command Injection Vulnerabilities in Ruijie RG-EW3000GX

First seen 16 Sep 2026, 21:20 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster September 17, 2026 at 20:58 UTC
  • Two critical vulnerabilities identified in Ruijie RG-EW3000GX.
  • Both vulnerabilities allow remote OS command injection.
  • Exploits for these vulnerabilities have been publicly disclosed.

Two vulnerabilities have been identified in the Ruijie RG-EW3000GX EW_3.0(1)B11P380 model. The first, CVE-2026-92398, affects the user_list_note module, allowing remote OS command injection via the Name argument in /etc/rg_config/admin. The second, CVE-2026-92397, involves the cc_set function in unifyframe-sgi.elf, enabling OS command injection through the data.url argument. Both vulnerabilities can be exploited remotely and have been made public, posing a significant risk to users of this device. Immediate action is advised for affected organizations to mitigate potential attacks.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Timeline

2026-09-16
CVE-2026-92398 disclosed
A vulnerability in the user_list_note module allows remote OS command injection via the Name argument.
Sploitus
2026-09-16
CVE-2026-92397 disclosed
A vulnerability in the cc_set function enables remote OS command injection through the data.url argument.
Sploitus

More articles in this cluster (2)