Vendor
critical
advisory
Remote Command Injection in Ruijie RG-EW3000GX
1 rule 2 TTPs 1 CVEA critical remote OS command injection vulnerability in the Ruijie RG-EW3000GX router allows unauthenticated attackers to execute arbitrary commands via the configChange component.
RG-EW3000GX
remote-code-execution
cve-2026-92398
command-injection
1r
2t
1c
high
advisory
CVE-2026-14736: Ruijie RG-UAC Unrestricted Upload Vulnerability
3 TTPs 1 CVEA critical unrestricted file upload vulnerability, CVE-2026-14736, in Ruijie RG-UAC up to version 1.0-R1.8.2.p5 allows unauthenticated remote attackers to upload arbitrary files via manipulation of the `upload_image` argument in `user_auth_commit.php`, potentially leading to remote code execution.
RG-UAC firmware up to 1.0-R1.8.2.p5
vulnerability
rce
unrestricted-file-upload
webserver
cve-2026-14736
3t
1c