Vulnerabilities > Ruijie

DATE CVE VULNERABILITY TITLE RISK
2023-07-31 CVE-2023-34644 Code Injection vulnerability in Ruijie products
Remote code execution vulnerability in Ruijie Networks Product: RG-EW series home routers and repeaters EW_3.0(1)B11P204, RG-NBS and RG-S1930 series switches SWITCH_3.0(1)B11P218, RG-EG series business VPN routers EG_3.0(1)B11P216, EAP and RAP series wireless access points AP_3.0(1)B11P218, NBC series wireless controllers AC_3.0(1)B11P86 allows unauthorized remote attackers to gain the highest privileges via crafted POST request to /cgi-bin/luci/api/auth.
network
low complexity
ruijie CWE-94
critical
9.8
2023-06-28 CVE-2023-3450 OS Command Injection vulnerability in Ruijie Rg-Bcr860 Firmware 2.5.13
A vulnerability was found in Ruijie RG-BCR860 2.5.13 and classified as critical.
network
low complexity
ruijie CWE-78
7.2
2023-06-18 CVE-2023-3306 Improper Access Control vulnerability in Ruijie Rg-Ew1200G Firmware Ew3.0(1)B11P204
A vulnerability was found in Ruijie RG-EW1200G EW_3.0(1)B11P204.
network
low complexity
ruijie CWE-284
critical
9.8
2021-11-16 CVE-2020-21627 Unspecified vulnerability in Ruijie Rg-Uac Firmware
Ruijie RG-UAC commit 9071227 was discovered to contain a vulnerability in the component /current_action.php?action=reboot, which allows attackers to cause a denial of service (DoS) via unspecified vectors.
network
low complexity
ruijie
5.0
2021-11-16 CVE-2020-21639 Cross-site Scripting vulnerability in Ruijie Rg-Uac 6000-E50 Firmware
Ruijie RG-UAC 6000-E50 commit 9071227 was discovered to contain a cross-site scripting (XSS) vulnerability via the rule_name parameter.
network
ruijie CWE-79
4.3