Ruijie RG-NBR700GW 10.3(4b12) router lacks cookie verification when resetting the password, resulting in an administrator password reset vulnerability. An attacker can use this vulnerability to log in to the device and disrupt the business of the enterprise.
References
Configurations
No configuration.
History
No history.
Information
Published : 2024-03-30 01:15
Updated : 2024-11-21 09:06
NVD link : CVE-2024-28288
Mitre link : CVE-2024-28288
CVE.ORG link : CVE-2024-28288
JSON object : View
Products Affected
No product.
CWE
CWE-565
Reliance on Cookies without Validation and Integrity Checking