Vulnerabilities > Ruijie

DATE CVE VULNERABILITY TITLE RISK
2023-12-20 CVE-2023-50993 OS Command Injection vulnerability in Ruijie Rg-Ws6008 Firmware and Rg-Ws6108 Firmware
Ruijie WS6008 v1.x v2.x AC_RGOS11.9(6)W3B2_G2C6-01_10221911 and WS6108 v1.x AC_RGOS11.9(6)W3B2_G2C6-01_10221911 was discovered to contain a command injection vulnerability via the function downFiles.
network
low complexity
ruijie CWE-78
critical
9.8
2023-12-06 CVE-2023-48849 Unspecified vulnerability in Ruijie products
Ruijie EG Series Routers version EG_3.0(1)B11P216 and before allows unauthenticated attackers to remotely execute arbitrary code due to incorrect filtering.
network
low complexity
ruijie
critical
9.8
2023-08-17 CVE-2023-38902 Command Injection vulnerability in Ruijie products
A command injection vulnerability in RG-EW series home routers and repeaters v.EW_3.0(1)B11P219, RG-NBS and RG-S1930 series switches v.SWITCH_3.0(1)B11P219, RG-EG series business VPN routers v.EG_3.0(1)B11P219, EAP and RAP series wireless access points v.AP_3.0(1)B11P219, and NBC series wireless controllers v.AC_3.0(1)B11P219 allows an authorized attacker to execute arbitrary commands on remote devices by sending a POST request to /cgi-bin/luci/api/cmd via the remoteIp field.
network
low complexity
ruijie CWE-77
8.8
2023-08-05 CVE-2023-4169 Unspecified vulnerability in Ruijie Rg-Ew1200G Firmware 1.0(1)B1P5
A vulnerability was found in Ruijie RG-EW1200G 1.0(1)B1P5.
network
low complexity
ruijie
8.8
2023-07-31 CVE-2023-34644 Code Injection vulnerability in Ruijie products
Remote code execution vulnerability in Ruijie Networks Product: RG-EW series home routers and repeaters EW_3.0(1)B11P204, RG-NBS and RG-S1930 series switches SWITCH_3.0(1)B11P218, RG-EG series business VPN routers EG_3.0(1)B11P216, EAP and RAP series wireless access points AP_3.0(1)B11P218, NBC series wireless controllers AC_3.0(1)B11P86 allows unauthorized remote attackers to gain the highest privileges via crafted POST request to /cgi-bin/luci/api/auth.
network
low complexity
ruijie CWE-94
critical
9.8
2023-06-28 CVE-2023-3450 OS Command Injection vulnerability in Ruijie Rg-Bcr860 Firmware 2.5.13
A vulnerability was found in Ruijie RG-BCR860 2.5.13 and classified as critical.
network
low complexity
ruijie CWE-78
7.2
2023-06-18 CVE-2023-3306 Improper Access Control vulnerability in Ruijie Rg-Ew1200G Firmware Ew3.0(1)B11P204
A vulnerability was found in Ruijie RG-EW1200G EW_3.0(1)B11P204.
network
low complexity
ruijie CWE-284
critical
9.8
2021-11-16 CVE-2020-21627 Unspecified vulnerability in Ruijie Rg-Uac Firmware
Ruijie RG-UAC commit 9071227 was discovered to contain a vulnerability in the component /current_action.php?action=reboot, which allows attackers to cause a denial of service (DoS) via unspecified vectors.
network
low complexity
ruijie
5.0
2021-11-16 CVE-2020-21639 Cross-site Scripting vulnerability in Ruijie Rg-Uac 6000-E50 Firmware
Ruijie RG-UAC 6000-E50 commit 9071227 was discovered to contain a cross-site scripting (XSS) vulnerability via the rule_name parameter.
network
ruijie CWE-79
4.3