CVE-2025-58778 - CVE House
Back to Database
Status published High CVE-2025-58778

Multiple versions of RG-EST300 provided by Ruijie Networks provide SSH...

Vulnerability Description

Multiple versions of RG-EST300 provided by Ruijie Networks provide SSH server functionality. It is not documented in the manual, and enabled in the initial configuration. Anyone with the knowledge of the related credentials can log in to the affected device, leading to information disclosure, altering the system configurations, or causing a denial of service (DoS) condition.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-58778

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Ruijie Networks Co., Ltd.

View all reports →

Affected Software

RG-EST300
Vulnerable Versions:
AP_3.0(1)B2P18_EST300_06210514, AP_3.0(1)B2P10_EST300_06151523, AP_3.0(1)B2P10_EST300_05232216, and AP_3.0(1)B2P10_EST300_05220814

Timeline

Official Publish: October 16th, 2025
Last Modified: October 16th, 2025
Added to House: July 22nd, 2026

CVSS Vectors

V3: CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Weaknesses (CWE)

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.