Vulnerabilities > Ruijienetworks

DATE CVE VULNERABILITY TITLE RISK
2023-08-18 CVE-2023-4415 Improper Authentication vulnerability in Ruijienetworks Rg-Ew1200G Firmware 07161417R483
A vulnerability was found in Ruijie RG-EW1200G 07161417 r483.
network
low complexity
ruijienetworks CWE-287
8.8
2023-07-10 CVE-2023-3608 OS Command Injection vulnerability in Ruijienetworks Bcr810W Firmware 2.5.10
A vulnerability was found in Ruijie BCR810W 2.5.10.
network
low complexity
ruijienetworks CWE-78
8.8
2023-03-26 CVE-2023-26800 Command Injection vulnerability in Ruijienetworks products
Ruijie Networks RG-EW1200 Wireless Routers EW_3.0(1)B11P204 was discovered to contain a command injetion vulnerability via the params.path parameter in the upgradeConfirm function.
network
low complexity
ruijienetworks CWE-77
critical
9.8
2023-03-26 CVE-2023-27796 Command Injection vulnerability in Ruijienetworks products
RG-EW1200G PRO Wireless Routers EW_3.0(1)B11P204, RG-EW1800GX PRO Wireless Routers EW_3.0(1)B11P204, and RG-EW3200GX PRO Wireless Routers EW_3.0(1)B11P204 were discovered to contain multiple command injection vulnerabilities via the data.ip, data.protocal, data.iface and data.package parameters in the runPackDiagnose function of diagnose.lua.
network
low complexity
ruijienetworks CWE-77
8.8
2022-06-25 CVE-2022-33128 SQL Injection vulnerability in Ruijienetworks Rg-Eg350 Firmware Egrgos11.1(6)
RG-EG series gateway EG350 EG_RGOS 11.1(6) was discovered to contain a SQL injection vulnerability via the function get_alarmAction at /alarm_pi/alarmService.php.
network
low complexity
ruijienetworks CWE-89
critical
9.1
2022-05-04 CVE-2021-43159 Command Injection vulnerability in Ruijienetworks Reyeeos
A Remote Code Execution (RCE) vulnerability exists in Ruijie Networks Ruijie RG-EW Series Routers up to ReyeeOS 1.55.1915 / EW_3.0(1)B11P55 via the setSessionTime function in /cgi-bin/luci/api/common..
network
low complexity
ruijienetworks CWE-77
8.8
2022-05-04 CVE-2021-43160 Command Injection vulnerability in Ruijienetworks Reyeeos
A Remote Code Execution (RCE) vulnerability exists in Ruijie Networks Ruijie RG-EW Series Routers up to ReyeeOS 1.55.1915 / EW_3.0(1)B11P55 via the switchFastDhcp function in /cgi-bin/luci/api/diagnose.
network
low complexity
ruijienetworks CWE-77
8.8
2022-05-04 CVE-2021-43161 Command Injection vulnerability in Ruijienetworks Reyeeos
A Remote Code Execution (RCE) vulnerability exists in Ruijie Networks Ruijie RG-EW Series Routers up to ReyeeOS 1.55.1915 / EW_3.0(1)B11P55 via the doSwitchApi function in /cgi-bin/luci/api/switch.
network
low complexity
ruijienetworks CWE-77
8.8
2022-05-04 CVE-2021-43162 Command Injection vulnerability in Ruijienetworks Reyeeos
A Remote Code Execution (RCE) vulnerability exists in Ruijie Networks Ruijie RG-EW Series Routers up to ReyeeOS 1.55.1915 / EW_3.0(1)B11P55 via the runPackDiagnose function in /cgi-bin/luci/api/diagnose.
network
low complexity
ruijienetworks CWE-77
8.8
2022-05-04 CVE-2021-43163 Command Injection vulnerability in Ruijienetworks Reyeeos
A Remote Code Execution (RCE) vulnerability exists in Ruijie Networks Ruijie RG-EW Series Routers up to ReyeeOS 1.55.1915 / EW_3.0(1)B11P55 via the checkNet function in /cgi-bin/luci/api/auth.
network
low complexity
ruijienetworks CWE-77
critical
9.8