CVE-2025-25527: Ruijie Rg-NBR2600S Firmware
Medium severity, CVSS 5.1. EPSS: 0.2% chance of exploitation in the next 30 days.
Buffer overflow vulnerability in Ruijie RG-NBR2600S Gateway 10.3(4b12) due to the lack of length verification, which is related to the configuration of source address NAT rules. Attackers who successfully exploit this vulnerability can cause the remote target device to crash or execute arbitrary commands.
Affected products
- Ruijie Rg-NBR2600S Firmware: version 10.3(4b12) only
Published 2025-02-11. Last modified 2026-06-17.