packetstormsecurity.com
http://packetstormsecurity.com/files/167099/Ruijie-Reyee-Mesh-Router-Remote-Code-Execution.html CVE-2021-43164
HIGH
Ruijie Reyee Mesh Router - Remote Code Execution (RCE) (Authenticated)
Record summary
CVE-2021-43164 has a selected CVSS score of 8.8 (high); EIP currently links 1 catalogued exploit.
Description
A Remote Code Execution (RCE) vulnerability exists in Ruijie Networks Ruijie RG-EW Series Routers up to ReyeeOS 1.55.1915 / EW_3.0(1)B11P55 via the updateVersion function in /cgi-bin/luci/api/wireless.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBRuijie Reyee Mesh Router - Remote Code Execution (RCE) (Authenticated)ExploitDB exploitby Minh KhoaNot analyzed1 file
References
4ruijie.com
http://ruijie.com/ nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2021-43164 seclists.org
https://seclists.org/fulldisclosure/2022/May/0