cn-sec.comTechnical descriptionexploit
https://cn-sec.com/archives/2284248.html CVE-2023-7304
CRITICAL
Ruijie RG-UAC nmc_sync.php Command Injection
Record summary
CVE-2023-7304 has a selected CVSS score of 9.3 (critical).
Description
Ruijie RG-UAC Application Management Gateway contains a command injection vulnerability via the 'nmc_sync.php' interface. An unauthenticated attacker able to reach the affected endpoint can inject shell commands via crafted request data, causing the application to execute arbitrary commands on the host. Successful exploitation can yield full control of the application process and may lead to system-level access depending on the service privileges. VulnCheck has observed this vulnerability being targeted by the RondoDox botnet campaign.
Description source: CVE List
Exploitation context
Known exploitation
- VulnCheck KEV
- Listed · Oct 14, 2025 · VulnCheck
- Reported exploitation
- Observed · VulnCheck
CISA SSVC decision
ExploitationNone
AutomatableYes
Technical impactTotal
CISA Coordinator · SSVC 2.0.3 · Evaluated Oct 15, 2025 · Source: CVE List
Affected products and versions
2| Product | Source | Version range | Status |
|---|---|---|---|
RG-UAC Application Management GatewayBrowse Ruijie Networks / RG-UAC Application Management Gateway | VulnCheck | Version data not supplied | |
Default status: unaffected | CVE List | * | affected |
References
3nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2023-7304 vulncheck.comThird-party advisory
https://www.vulncheck.com/advisories/ruijie-rg-uac-nmc-sync-php-command-injection