Insecure Permissions vulnerability in Ruijie RG-NBS2009G-P RGOS v.10.4(1)P2 Release (9736) allows a remote attacker to gain privileges via the login check state component.
References
Link | Resource |
---|---|
https://gist.github.com/zty-1995/dbb3d5b2dbf65b4de5b71e57d08139ea | Third Party Advisory |
https://github.com/zty-1995/RG-NBS2009G-P-switch/tree/main/Any%20user%20login%20exists | Exploit Third Party Advisory |
https://github.com/zty-1995/RG-NBS2009G-P-switch/tree/main/Any%20user%20login%20exists | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
13 Mar 2025, 14:15
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/zty-1995/RG-NBS2009G-P-switch/tree/main/Any%20user%20login%20exists - Exploit, Third Party Advisory |
Information
Published : 2024-10-02 21:15
Updated : 2025-03-13 14:15
NVD link : CVE-2024-24117
Mitre link : CVE-2024-24117
CVE.ORG link : CVE-2024-24117
JSON object : View
Products Affected
ruijie
- rg-nbs2009g-p_firmware
- rg-nbs2009g-p
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource