{"id":"CVE-2025-65363","title":"Authenticated append-style command-injection Ruijie APs (AP_RGOS 11.1.x) allows an authenticated web user to execute appended shell expressions as root, enabling file disclosure, device disruption, and potential network pivoting via the …","summary":"Authenticated append-style command-injection Ruijie APs (AP_RGOS 11.1.x) allows an authenticated web user to execute appended shell expressions as root, enabling file disclosure, device disruption, and potential network pivoting via the …","severity":"high","cvss":7.2,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H","cwe":["CWE-77"],"vendor":"ruijie","product":"rg-ap720-l_firmware","affected":["rg-ap720-l_firmware >= 11.1.0, <= 11.1\\(9\\)B1P21"],"published":"2025-12-08","updated":"2026-07-05","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2025-65363","references":[{"url":"https://github.com/tmogg/security-advisories/blob/main/CVE-2025-65363/README.md","label":"cve@mitre.org"}],"tags":["nvd"],"epss":0.06686,"epssPercentile":0.93609,"ingestedAt":"2026-07-06T16:44:34.476Z","slug":"CVE-2025-65363","body":"## Overview\n\nAuthenticated append-style command-injection Ruijie APs (AP_RGOS 11.1.x) allows an authenticated web user to execute appended shell expressions as root, enabling file disclosure, device disruption, and potential network pivoting via the command parameter to the web_action.do endpoint.\n\n## Affected\n\n- `rg-ap720-l_firmware >= 11.1.0, <= 11.1\\(9\\)B1P21`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":41,"depthScoreParts":{"impact":39.6,"likelihood":1.3,"exploitation":0,"ransomware":0},"changes":[]}