8.8

CVE-2023-38902

Exploit
A command injection vulnerability in RG-EW series home routers and repeaters v.EW_3.0(1)B11P219, RG-NBS and RG-S1930 series switches v.SWITCH_3.0(1)B11P219, RG-EG series business VPN routers v.EG_3.0(1)B11P219, EAP and RAP series wireless access points v.AP_3.0(1)B11P219, and NBC series wireless controllers v.AC_3.0(1)B11P219 allows an authorized attacker to execute arbitrary commands on remote devices by sending a POST request to /cgi-bin/luci/api/cmd via the remoteIp field.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
RuijieRg-ew1200 Firmware Version3.0(1)b11p219
   RuijieRg-ew1200 Version-
RuijieRg-ew1200g Pro Firmware Version3.0(1)b11p219
   RuijieRg-ew1200g Pro Version-
RuijieRg-ew1200r Firmware Version3.0(1)b11p219
   RuijieRg-ew1200r Version-
RuijieRg-ew1300g Firmware Version3.0(1)b11p219
   RuijieRg-ew1300g Version-
RuijieRg-ew1800gx Pro Firmware Version3.0(1)b11p219
   RuijieRg-ew1800gx Pro Version-
RuijieRg-ew3000gx Pro Firmware Version3.0(1)b11p219
   RuijieRg-ew3000gx Pro Version-
RuijieRg-ew300 Pro Firmware Version3.0(1)b11p219
   RuijieRg-ew300 Pro Version-
RuijieRg-ew300r Firmware Version3.0(1)b11p219
   RuijieRg-ew300r Version-
RuijieRg-ew3200gx Pro Firmware Version3.0(1)b11p219
   RuijieRg-ew3200gx Pro Version-
RuijieRg-nb3200-24gt4xs Firmware Version3.0(1)b11p219
   RuijieRg-nb3200-24gt4xs Version-
RuijieRg-nbs1850gc Firmware Version3.0(1)b11p219
   RuijieRg-nbs1850gc Version-
RuijieRg-nbs1850gc V2 Firmware Version3.0(1)b11p219
   RuijieRg-nbs1850gc V2 Version-
RuijieRg-nbs2000 Firmware Version3.0(1)b11p219
   RuijieRg-nbs2000 Version-
RuijieRg-nbs2009g-p Firmware Version3.0(1)b11p219
   RuijieRg-nbs2009g-p Version-
RuijieRg-nbs200 Firmware Version3.0(1)b11p219
   RuijieRg-nbs200 Version-
RuijieRg-nbs2026g-p Firmware Version3.0(1)b11p219
   RuijieRg-nbs2026g-p Version-
RuijieRg-nbs2026g Firmware Version3.0(1)b11p219
   RuijieRg-nbs2026g Version-
RuijieRg-nbs226f Firmware Version3.0(1)b11p219
   RuijieRg-nbs226f Version-
RuijieRg-nbs228f Firmware Version3.0(1)b11p219
   RuijieRg-nbs228f Version-
RuijieRg-nbs252f Firmware Version3.0(1)b11p219
   RuijieRg-nbs252f Version-
RuijieRg-nbs3100-24gt4sfp-p Firmware Version3.0(1)b11p219
   RuijieRg-nbs3100-24gt4sfp-p Version-
RuijieRg-nbs3100-24gt4sfp-p V2 Firmware Version3.0(1)b11p219
   RuijieRg-nbs3100-24gt4sfp-p V2 Version-
RuijieRg-nbs3100-24gt4sfp Firmware Version3.0(1)b11p219
   RuijieRg-nbs3100-24gt4sfp Version-
RuijieRg-nbs3100-48gt4sfp Firmware Version3.0(1)b11p219
   RuijieRg-nbs3100-48gt4sfp Version-
RuijieRg-nbs3100-8gt2sfp-p Firmware Version3.0(1)b11p219
   RuijieRg-nbs3100-8gt2sfp-p Version-
RuijieRg-nbs3100-8gt2sfp Firmware Version3.0(1)b11p219
   RuijieRg-nbs3100-8gt2sfp Version-
RuijieRg-nbs3200-24gt4xs-p Firmware Version3.0(1)b11p219
   RuijieRg-nbs3200-24gt4xs-p Version-
RuijieRg-nbs3200-24sfp/8gt4xs Firmware Version3.0(1)b11p219
   RuijieRg-nbs3200-24sfp/8gt4xs Version-
RuijieRg-nbs3200-48gt4xs-p Firmware Version3.0(1)b11p219
   RuijieRg-nbs3200-48gt4xs-p Version-
RuijieRg-nbs3200-48gt4xs Firmware Version3.0(1)b11p219
   RuijieRg-nbs3200-48gt4xs Version-
RuijieRg-nbs5100-24gt4sfp Firmware Version3.0(1)b11p219
   RuijieRg-nbs5100-24gt4sfp Version-
RuijieRg-nbs5100-48gt4sfp Firmware Version3.0(1)b11p219
   RuijieRg-nbs5100-48gt4sfp Version-
RuijieRg-nbs5200-24gt4x Firmware Version3.0(1)b11p219
   RuijieRg-nbs5200-24gt4x Version-
RuijieRg-nbs5200-24sfp/8gt4xs Firmware Version3.0(1)b11p219
   RuijieRg-nbs5200-24sfp/8gt4xs Version-
RuijieRg-nbs5200-48gt4xs Firmware Version3.0(1)b11p219
   RuijieRg-nbs5200-48gt4xs Version-
RuijieRg-nbs5300-48mg6xs Firmware Version3.0(1)b11p219
   RuijieRg-nbs5300-48mg6xs Version-
RuijieRg-nbs5528xg Firmware Version3.0(1)b11p219
   RuijieRg-nbs5528xg Version-
RuijieRg-nbs5552xg Firmware Version3.0(1)b11p219
   RuijieRg-nbs5552xg Version-
RuijieRg-nbs5552xg V2.0 Firmware Version3.0(1)b11p219
   RuijieRg-nbs5552xg V2.0 Version-
RuijieRg-nbs5628xg Firmware Version3.0(1)b11p219
   RuijieRg-nbs5628xg Version-
RuijieRg-nbs5652xg Firmware Version3.0(1)b11p219
   RuijieRg-nbs5652xg Version-
RuijieRg-nbs5710-24gt4sfp-e-p Firmware Version3.0(1)b11p219
   RuijieRg-nbs5710-24gt4sfp-e-p Version-
RuijieRg-nbs5710-24gt4sfp-e Firmware Version3.0(1)b11p219
   RuijieRg-nbs5710-24gt4sfp-e Version-
RuijieRg-nbs5710-48gt4sfp-e Firmware Version3.0(1)b11p219
   RuijieRg-nbs5710-48gt4sfp-e Version-
RuijieRg-nbs5750-28gt4xs-e Firmware Version3.0(1)b11p219
   RuijieRg-nbs5750-28gt4xs-e Version-
RuijieRg-nbs5750v2-24gt4xs-e Firmware Version3.0(1)b11p219
   RuijieRg-nbs5750v2-24gt4xs-e Version-
RuijieRg-nbs5750v2-24sfp4xs-e Firmware Version3.0(1)b11p219
   RuijieRg-nbs5750v2-24sfp4xs-e Version-
RuijieRg-nbs5750v2-48gt4xs-e Firmware Version3.0(1)b11p219
   RuijieRg-nbs5750v2-48gt4xs-e Version-
RuijieRg-nbs5816xs Firmware Version3.0(1)b11p219
   RuijieRg-nbs5816xs Version-
RuijieRg-nbs6002 Firmware Version3.0(1)b11p219
   RuijieRg-nbs6002 Version-
RuijieRg-nbs6100-20xs4vs2qxs-s Firmware Version3.0(1)b11p219
   RuijieRg-nbs6100-20xs4vs2qxs-s Version-
RuijieRg-nbs7003 Firmware Version3.0(1)b11p219
   RuijieRg-nbs7003 Version-
RuijieRg-nbs7006 Firmware Version3.0(1)b11p219
   RuijieRg-nbs7006 Version-
RuijieRg-s1930-24gt4sfp Firmware Version3.0(1)b11p219
   RuijieRg-s1930-24gt4sfp Version-
RuijieRg-s1930-24t4sfp-p Firmware Version3.0(1)b11p219
   RuijieRg-s1930-24t4sfp-p Version-
RuijieRg-s1930-24t4sfp Firmware Version3.0(1)b11p219
   RuijieRg-s1930-24t4sfp Version-
RuijieRg-s1930-8gt2sfp-p Firmware Version3.0(1)b11p219
   RuijieRg-s1930-8gt2sfp-p Version-
RuijieRg-s1930-8gt2sfp Firmware Version3.0(1)b11p219
   RuijieRg-s1930-8gt2sfp Version-
RuijieRg-s1930-8t2sfp-p Firmware Version3.0(1)b11p219
   RuijieRg-s1930-8t2sfp-p Version-
RuijieRg-eg210g-pe Firmware Version3.0(1)b11p219
   RuijieRg-eg210g-pe Version-
RuijieRg-eg210g-e Firmware Version3.0(1)b11p219
   RuijieRg-eg210g-e Version-
RuijieRg-eg105g-pe Firmware Version3.0(1)b11p219
   RuijieRg-eg105g-pe Version-
RuijieRg-eg105g-e Firmware Version3.0(1)b11p219
   RuijieRg-eg105g-e Version-
RuijieRg-eg105g V2 Firmware Version3.0(1)b11p219
   RuijieRg-eg105g V2 Version-
RuijieRg-eg210g-p Firmware Version3.0(1)b11p219
   RuijieRg-eg210g-p Version-
RuijieRg-rap1260(g) Firmware Version3.0(1)b11p219
   RuijieRg-rap1260(g) Version-
RuijieRg-rap1200(e) Firmware Version3.0(1)b11p219
   RuijieRg-rap1200(e) Version-
RuijieRg-rap1200(f) Firmware Version3.0(1)b11p219
   RuijieRg-rap1200(f) Version-
RuijieRg-rap120v2 Firmware Version3.0(1)b11p219
   RuijieRg-rap120v2 Version-
RuijieRg-rap100 Firmware Version3.0(1)b11p219
   RuijieRg-rap100 Version-
RuijieRg-rap120 Firmware Version3.0(1)b11p219
   RuijieRg-rap120 Version-
RuijieRg-rap6260(g) Firmware Version3.0(1)b11p219
   RuijieRg-rap6260(g) Version-
RuijieRg-rap2260(e) Firmware Version3.0(1)b11p219
   RuijieRg-rap2260(e) Version-
RuijieRg-rap2260(g) Firmware Version3.0(1)b11p219
   RuijieRg-rap2260(g) Version-
RuijieRg-rap2200(g) Firmware Version3.0(1)b11p219
   RuijieRg-rap2200(g) Version-
RuijieRg-rap2200(e) Firmware Version3.0(1)b11p219
   RuijieRg-rap2200(e) Version-
RuijieRg-rap2200(f) Firmware Version3.0(1)b11p219
   RuijieRg-rap2200(f) Version-
RuijieRg-eap101 V2 Firmware Version3.0(1)b11p219
   RuijieRg-eap101 V2 Version-
RuijieRg-eap102 V2 Firmware Version3.0(1)b11p219
   RuijieRg-eap102 V2 Version-
RuijieRg-eap162(g) Firmware Version3.0(1)b11p219
   RuijieRg-eap162(g) Version-
RuijieRg-eap102(f) Firmware Version3.0(1)b11p219
   RuijieRg-eap102(f) Version-
RuijieRg-eap102 Firmware Version3.0(1)b11p219
   RuijieRg-eap102 Version-
RuijieRg-eap101 Firmware Version3.0(1)b11p219
   RuijieRg-eap101 Version-
RuijieRg-rap630ioda Firmware Version3.0(1)b11p219
   RuijieRg-rap630ioda Version-
RuijieRg-rap630cd Firmware Version3.0(1)b11p219
   RuijieRg-rap630cd Version-
RuijieRg-rap6261(e) Firmware Version3.0(1)b11p219
   RuijieRg-rap6261(e) Version-
RuijieRg-rap6261(cd) Firmware Version3.0(1)b11p219
   RuijieRg-rap6261(cd) Version-
RuijieRg-eap262(g) Firmware Version3.0(1)b11p219
   RuijieRg-eap262(g) Version-
RuijieRg-eap212(g) Firmware Version3.0(1)b11p219
   RuijieRg-eap212(g) Version-
RuijieRg-eap212(f) Firmware Version3.0(1)b11p219
   RuijieRg-eap212(f) Version-
RuijieRg-eap202 Firmware Version3.0(1)b11p219
   RuijieRg-eap202 Version-
RuijieRg-eap201 Firmware Version3.0(1)b11p219
   RuijieRg-eap201 Version-
RuijieRg-eap602 Firmware Version3.0(1)b11p219
   RuijieRg-eap602 Version-
RuijieRg-eap662(g) Firmware Version3.0(1)b11p219
   RuijieRg-eap662(g) Version-
RuijieRg-nbc256 Firmware Version3.0(1)b11p219
   RuijieRg-nbc256 Version-
RuijieRg-nbc512 Firmware Version3.0(1)b11p219
   RuijieRg-nbc512 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.41% 0.803
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 8.8 2.8 5.9
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')

The product constructs all or part of a command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended command when it is sent to a downstream component.