← voltar
CVE-2020-36870

Ruijie Gateway EG & NBR Models v11.1(6)B9P1 - 11.9(4)B12P1 RCE

CVSS 9.2 CRITICALEPSS 0.7%CWE-94
Various Ruijie Gateway EG and NBR models firmware versions 11.1(6)B9P1 < 11.9(4)B12P1 contain a code execution vulnerability in the EWEB management system that can be abused via front-end functionality. Attackers can exploit front-end code when features such as guest authentication, local server authentication, or screen mirroring are enabled to gain access or execute commands on affected devices. Exploitation evidence was first observed by the Shadowserver Foundation on 2025-02-05 UTC.
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Produtos afetados
Beijing Star-Net Ruijie Network Technology Co., Ltd. · EG3210Beijing Star-Net Ruijie Network Technology Co., Ltd. · EG3220Beijing Star-Net Ruijie Network Technology Co., Ltd. · EG3230Beijing Star-Net Ruijie Network Technology Co., Ltd. · EG3250Beijing Star-Net Ruijie Network Technology Co., Ltd. · NBR1000G-CBeijing Star-Net Ruijie Network Technology Co., Ltd. · NBR1000G-EBeijing Star-Net Ruijie Network Technology Co., Ltd. · NBR108G-PBeijing Star-Net Ruijie Network Technology Co., Ltd. · NBR1300G-EBeijing Star-Net Ruijie Network Technology Co., Ltd. · NBR1700G-EBeijing Star-Net Ruijie Network Technology Co., Ltd. · NBR2000G-CBeijing Star-Net Ruijie Network Technology Co., Ltd. · NBR2100G-EBeijing Star-Net Ruijie Network Technology Co., Ltd. · NBR2500D-EBeijing Star-Net Ruijie Network Technology Co., Ltd. · NBR3000D-EBeijing Star-Net Ruijie Network Technology Co., Ltd. · NBR3000G-SBeijing Star-Net Ruijie Network Technology Co., Ltd. · NBR6120-EBeijing Star-Net Ruijie Network Technology Co., Ltd. · NBR6135-EBeijing Star-Net Ruijie Network Technology Co., Ltd. · NBR6205-EBeijing Star-Net Ruijie Network Technology Co., Ltd. · NBR6210-EBeijing Star-Net Ruijie Network Technology Co., Ltd. · NBR6215-EBeijing Star-Net Ruijie Network Technology Co., Ltd. · NBR800GBeijing Star-Net Ruijie Network Technology Co., Ltd. · NBR950GBeijing Star-Net Ruijie Network Technology Co., Ltd. · RG-EG1000CBeijing Star-Net Ruijie Network Technology Co., Ltd. · RG-EG2000CEBeijing Star-Net Ruijie Network Technology Co., Ltd. · RG-EG2000FBeijing Star-Net Ruijie Network Technology Co., Ltd. · RG-EG2000GEBeijing Star-Net Ruijie Network Technology Co., Ltd. · RG-EG2000KBeijing Star-Net Ruijie Network Technology Co., Ltd. · RG-EG2000LBeijing Star-Net Ruijie Network Technology Co., Ltd. · RG-EG2000SEBeijing Star-Net Ruijie Network Technology Co., Ltd. · RG-EG2000UEBeijing Star-Net Ruijie Network Technology Co., Ltd. · RG-EG2000XEBeijing Star-Net Ruijie Network Technology Co., Ltd. · RG-EG2100-PBeijing Star-Net Ruijie Network Technology Co., Ltd. · RG-EG3000CEBeijing Star-Net Ruijie Network Technology Co., Ltd. · RG-EG3000GEBeijing Star-Net Ruijie Network Technology Co., Ltd. · RG-EG3000MEBeijing Star-Net Ruijie Network Technology Co., Ltd. · RG-EG3000SEBeijing Star-Net Ruijie Network Technology Co., Ltd. · RG-EG3000UEBeijing Star-Net Ruijie Network Technology Co., Ltd. · RG-EG3000XE

Quer saber se a sua infraestrutura está exposta a isto?

Falar com a TrueHacking →