CVE-2024-24117

Insecure Permissions vulnerability in Ruijie RG-NBS2009G-P RGOS v.10.4(1)P2 Release (9736) allows a remote attacker to gain privileges via the login check state component.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:ruijie:rg-nbs2009g-p_firmware:10.4\(1\)p2_release\(9736\):*:*:*:*:*:*:*
cpe:2.3:h:ruijie:rg-nbs2009g-p:-:*:*:*:*:*:*:*

History

13 Mar 2025, 14:15

Type Values Removed Values Added
References () https://github.com/zty-1995/RG-NBS2009G-P-switch/tree/main/Any%20user%20login%20exists - Exploit, Third Party Advisory () https://github.com/zty-1995/RG-NBS2009G-P-switch/tree/main/Any%20user%20login%20exists - Exploit, Third Party Advisory

Information

Published : 2024-10-02 21:15

Updated : 2025-03-13 14:15


NVD link : CVE-2024-24117

Mitre link : CVE-2024-24117

CVE.ORG link : CVE-2024-24117


JSON object : View

Products Affected

ruijie

  • rg-nbs2009g-p_firmware
  • rg-nbs2009g-p
CWE
CWE-732

Incorrect Permission Assignment for Critical Resource