Vulnerabilities > Ruijie

DATE CVE VULNERABILITY TITLE RISK
2024-10-15 CVE-2024-48783 Unspecified vulnerability in Ruijie Nbr3000D-E Firmware
An issue in Ruijie NBR3000D-E Gateway allows a remote attacker to obtain sensitive information via the /tool/shell/postgresql.conf component.
network
low complexity
ruijie
7.5
2024-10-02 CVE-2024-24117 Incorrect Permission Assignment for Critical Resource vulnerability in Ruijie Rg-Nbs2009G-P Firmware 10.4(1)P2Release(9736)
Insecure Permissions vulnerability in Ruijie RG-NBS2009G-P RGOS v.10.4(1)P2 Release (9736) allows a remote attacker to gain privileges via the login check state component.
network
low complexity
ruijie CWE-732
critical
9.8
2024-10-02 CVE-2024-24116 Unspecified vulnerability in Ruijie Rg-Nbs2009G-P Firmware 10.4(1)P2Release(9736)
An issue in Ruijie RG-NBS2009G-P RGOS v.10.4(1)P2 Release(9736) allows a remote attacker to gain privileges via the system/config_menu.htm.
network
low complexity
ruijie
critical
9.8
2024-08-26 CVE-2024-8166 Unrestricted Upload of File with Dangerous Type vulnerability in Ruijie Eg2000K Firmware 11.1(6)B2
A vulnerability has been found in Ruijie EG2000K 11.1(6)B2 and classified as critical.
network
low complexity
ruijie CWE-434
4.9
2024-07-16 CVE-2019-16638 Cleartext Storage of Sensitive Information vulnerability in Ruijie Eg-2000Se Firmware 11.1(1)B1
An issue was found on the Ruijie EG-2000 series gateway.
network
low complexity
ruijie CWE-312
7.5
2024-06-20 CVE-2024-6185 OS Command Injection vulnerability in Ruijie Rg-Uac Firmware 1.0
A vulnerability, which was classified as critical, has been found in Ruijie RG-UAC 1.0.
network
low complexity
ruijie CWE-78
8.8
2023-12-20 CVE-2023-50993 OS Command Injection vulnerability in Ruijie Rg-Ws6008 Firmware and Rg-Ws6108 Firmware
Ruijie WS6008 v1.x v2.x AC_RGOS11.9(6)W3B2_G2C6-01_10221911 and WS6108 v1.x AC_RGOS11.9(6)W3B2_G2C6-01_10221911 was discovered to contain a command injection vulnerability via the function downFiles.
network
low complexity
ruijie CWE-78
critical
9.8
2023-12-06 CVE-2023-48849 Unspecified vulnerability in Ruijie products
Ruijie EG Series Routers version EG_3.0(1)B11P216 and before allows unauthenticated attackers to remotely execute arbitrary code due to incorrect filtering.
network
low complexity
ruijie
critical
9.8
2023-08-17 CVE-2023-38902 Command Injection vulnerability in Ruijie products
A command injection vulnerability in RG-EW series home routers and repeaters v.EW_3.0(1)B11P219, RG-NBS and RG-S1930 series switches v.SWITCH_3.0(1)B11P219, RG-EG series business VPN routers v.EG_3.0(1)B11P219, EAP and RAP series wireless access points v.AP_3.0(1)B11P219, and NBC series wireless controllers v.AC_3.0(1)B11P219 allows an authorized attacker to execute arbitrary commands on remote devices by sending a POST request to /cgi-bin/luci/api/cmd via the remoteIp field.
network
low complexity
ruijie CWE-77
8.8
2023-08-05 CVE-2023-4169 Unspecified vulnerability in Ruijie Rg-Ew1200G Firmware 1.0(1)B1P5
A vulnerability was found in Ruijie RG-EW1200G 1.0(1)B1P5.
network
low complexity
ruijie
8.8