CVE-2023-48849

CRITICAL

Ruijie EG Series Routers <EG_3.0(1)B11P216 - RCE

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2023-48849. PoCs published by delsploit.

AI-analyzed exploit summary The repository contains minimal content with no actual exploit code, only a README describing the vulnerability and a YouTube demo link. It lacks technical details or functional PoC code.

Description

Ruijie EG Series Routers version EG_3.0(1)B11P216 and before allows unauthenticated attackers to remotely execute arbitrary code due to incorrect filtering.

Exploits (1)

nomisec SUSPICIOUS
by delsploit · poc
https://github.com/delsploit/CVE-2023-48849

The repository contains minimal content with no actual exploit code, only a README describing the vulnerability and a YouTube demo link. It lacks technical details or functional PoC code.

Classification
Suspicious 80%
Attack Type
Rce
Complexity
Theoretical
Reliability
Theoretical
Target: Ruijie EG Series Routers firmware <=EG_3.0(1)B11P216
No auth needed
Prerequisites: Network access to the target router
devstral-2 · analyzed Feb 18, 2026 Full analysis →

References (1)

Core 1
Core References
Exploit, Third Party Advisory
https://github.com/delsploit/CVE-2023-48849

Scores

CVSS v3 9.8
EPSS 0.0129
EPSS Percentile 66.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

Status published
Products (21)
ruijie/rg-eg1000c_firmware 3.0\(1\)b11p216
ruijie/rg-eg1000e_firmware 3.0\(1\)b11p216
ruijie/rg-eg105g-e_firmware 3.0\(1\)b11p216
ruijie/rg-eg105g-p_firmware 3.0\(1\)b11p216
ruijie/rg-eg105g-pe_firmware 3.0\(1\)b11p216
ruijie/rg-eg105g_firmware 3.0\(1\)b11p216
ruijie/rg-eg105g_v2_firmware 3.0\(1\)b11p216
ruijie/rg-eg105gw-x_firmware 3.0\(1\)b11p216
ruijie/rg-eg105gw\(t\)_firmware 3.0\(1\)b11p216
ruijie/rg-eg2000ce_firmware 3.0\(1\)b11p216
... and 11 more
Published Dec 06, 2023
Tracked Since Feb 18, 2026