nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2024-47791 CVE-2024-47791
HIGH
Ruijie Reyee OS Improper Neutralization of Wildcards or Matching Symbols
Record summary
CVE-2024-47791 has a selected CVSS score of 8.7 (high).
Description
Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x could allow an attacker to subscribe to partial possible topics in Ruijie MQTT broker, and receive partial messages being sent to and from devices.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableYes
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Dec 6, 2024 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
Reyee OSBrowse Ruijie / Reyee OSDefault status: unaffected, unknown | CVE List | 2.206.x to < 2.320.x | affected |
References
2cisa.gov
https://www.cisa.gov/news-events/ics-advisories/icsa-24-338-01