CVE-2023-4415
Ruijie RG-EW1200G login improper authentication
Record summary
CVE-2023-4415 has a selected CVSS score of 7.3 (high); EIP currently links 1 repository PoC and 1 Nuclei template.
Description
A vulnerability was found in Ruijie RG-EW1200G 07161417 r483. It has been rated as critical. Affected by this issue is some unknown functionality of the file /api/sys/login. The manipulation leads to improper authentication. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-237518 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Exploitation context
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
RG-EW1200GBrowse Ruijie / RG-EW1200G | CVE List | 07161417 r483 | affected |
Proofs of concept
1Repository PoCs
GitHubthedarknessdied/CVE-2023-4169_CVE-2023-3306_CVE-2023-4415Repository PoCby thedarknessdiedStars: 29Not analyzed5 files
Nuclei templates
1ProjectDiscoveryHIGHRuijie RG-EW1200G Router Background - Login BypassCVSS 8.8
A vulnerability was found in Ruijie RG-EW1200G 07161417 r483. It has been rated as critical. Affected by this issue is some unknown functionality of the file /api/sys/login. The manipulation leads to improper authentication. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-237518 is the identifier assigned to this vulnerability.
Impact
Attackers can bypass authentication on the Ruijie RG-EW1200G router through improper authentication checks in the login API, potentially gaining administrative access to the router and compromising network security.
Remediation
Update Ruijie RG-EW1200G firmware to a version newer than 07161417 r483 that implements proper authentication validation in the login API.
Source: ProjectDiscovery