CVE-2023-38902

A command injection vulnerability in RG-EW series home routers and repeaters v.EW_3.0(1)B11P219, RG-NBS and RG-S1930 series switches v.SWITCH_3.0(1)B11P219, RG-EG series business VPN routers v.EG_3.0(1)B11P219, EAP and RAP series wireless access points v.AP_3.0(1)B11P219, and NBC series wireless controllers v.AC_3.0(1)B11P219 allows an authorized attacker to execute arbitrary commands on remote devices by sending a POST request to /cgi-bin/luci/api/cmd via the remoteIp field.
Command Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
8.8 HIGH
NETWORK
LOW
LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
mitreCNA
---
---
CVEADP
---
---
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 79%
VendorProductVersion
ruijierg-ew1200_firmware
3.0\(1\)b11p219
ruijierg-ew1200g_pro_firmware
3.0\(1\)b11p219
ruijierg-ew1200r_firmware
3.0\(1\)b11p219
ruijierg-ew1300g_firmware
3.0\(1\)b11p219
ruijierg-ew1800gx_pro_firmware
3.0\(1\)b11p219
ruijierg-ew3000gx_pro_firmware
3.0\(1\)b11p219
ruijierg-ew300_pro_firmware
3.0\(1\)b11p219
ruijierg-ew300r_firmware
3.0\(1\)b11p219
ruijierg-ew3200gx_pro_firmware
3.0\(1\)b11p219
ruijierg-nb3200-24gt4xs_firmware
3.0\(1\)b11p219
ruijierg-nbs1850gc_firmware
3.0\(1\)b11p219
ruijierg-nbs1850gc_v2_firmware
3.0\(1\)b11p219
ruijierg-nbs2000_firmware
3.0\(1\)b11p219
ruijierg-nbs2009g-p_firmware
3.0\(1\)b11p219
ruijierg-nbs200_firmware
3.0\(1\)b11p219
ruijierg-nbs2026g-p_firmware
3.0\(1\)b11p219
ruijierg-nbs2026g_firmware
3.0\(1\)b11p219
ruijierg-nbs226f_firmware
3.0\(1\)b11p219
ruijierg-nbs228f_firmware
3.0\(1\)b11p219
ruijierg-nbs252f_firmware
3.0\(1\)b11p219
ruijierg-nbs3100-24gt4sfp-p_firmware
3.0\(1\)b11p219
ruijierg-nbs3100-24gt4sfp-p_v2_firmware
3.0\(1\)b11p219
ruijierg-nbs3100-24gt4sfp_firmware
3.0\(1\)b11p219
ruijierg-nbs3100-48gt4sfp_firmware
3.0\(1\)b11p219
ruijierg-nbs3100-8gt2sfp-p_firmware
3.0\(1\)b11p219
ruijierg-nbs3100-8gt2sfp_firmware
3.0\(1\)b11p219
ruijierg-nbs3200-24gt4xs-p_firmware
3.0\(1\)b11p219
ruijierg-nbs3200-24sfp\/8gt4xs_firmware
3.0\(1\)b11p219
ruijierg-nbs3200-48gt4xs-p_firmware
3.0\(1\)b11p219
ruijierg-nbs3200-48gt4xs_firmware
3.0\(1\)b11p219
ruijierg-nbs5100-24gt4sfp_firmware
3.0\(1\)b11p219
ruijierg-nbs5100-48gt4sfp_firmware
3.0\(1\)b11p219
ruijierg-nbs5200-24gt4x_firmware
3.0\(1\)b11p219
ruijierg-nbs5200-24sfp\/8gt4xs_firmware
3.0\(1\)b11p219
ruijierg-nbs5200-48gt4xs_firmware
3.0\(1\)b11p219
ruijierg-nbs5300-48mg6xs_firmware
3.0\(1\)b11p219
ruijierg-nbs5528xg_firmware
3.0\(1\)b11p219
ruijierg-nbs5552xg_firmware
3.0\(1\)b11p219
ruijierg-nbs5552xg_v2.0_firmware
3.0\(1\)b11p219
ruijierg-nbs5628xg_firmware
3.0\(1\)b11p219
ruijierg-nbs5652xg_firmware
3.0\(1\)b11p219
ruijierg-nbs5710-24gt4sfp-e-p_firmware
3.0\(1\)b11p219
ruijierg-nbs5710-24gt4sfp-e_firmware
3.0\(1\)b11p219
ruijierg-nbs5710-48gt4sfp-e_firmware
3.0\(1\)b11p219
ruijierg-nbs5750-28gt4xs-e_firmware
3.0\(1\)b11p219
ruijierg-nbs5750v2-24gt4xs-e_firmware
3.0\(1\)b11p219
ruijierg-nbs5750v2-24sfp4xs-e_firmware
3.0\(1\)b11p219
ruijierg-nbs5750v2-48gt4xs-e_firmware
3.0\(1\)b11p219
ruijierg-nbs5816xs_firmware
3.0\(1\)b11p219
ruijierg-nbs6002_firmware
3.0\(1\)b11p219
ruijierg-nbs6100-20xs4vs2qxs-s_firmware
3.0\(1\)b11p219
ruijierg-nbs7003_firmware
3.0\(1\)b11p219
ruijierg-nbs7006_firmware
3.0\(1\)b11p219
ruijierg-s1930-24gt4sfp_firmware
3.0\(1\)b11p219
ruijierg-s1930-24t4sfp-p_firmware
3.0\(1\)b11p219
ruijierg-s1930-24t4sfp_firmware
3.0\(1\)b11p219
ruijierg-s1930-8gt2sfp-p_firmware
3.0\(1\)b11p219
ruijierg-s1930-8gt2sfp_firmware
3.0\(1\)b11p219
ruijierg-s1930-8t2sfp-p_firmware
3.0\(1\)b11p219
ruijierg-eg210g-pe_firmware
3.0\(1\)b11p219
ruijierg-eg210g-e_firmware
3.0\(1\)b11p219
ruijierg-eg105g-pe_firmware
3.0\(1\)b11p219
ruijierg-eg105g-e_firmware
3.0\(1\)b11p219
ruijierg-eg105g_v2_firmware
3.0\(1\)b11p219
ruijierg-eg210g-p_firmware
3.0\(1\)b11p219
ruijierg-rap1260\(g\)_firmware
3.0\(1\)b11p219
ruijierg-rap1200\(e\)_firmware
3.0\(1\)b11p219
ruijierg-rap1200\(f\)_firmware
3.0\(1\)b11p219
ruijierg-rap120v2_firmware
3.0\(1\)b11p219
ruijierg-rap100_firmware
3.0\(1\)b11p219
ruijierg-rap120_firmware
3.0\(1\)b11p219
ruijierg-rap6260\(g\)_firmware
3.0\(1\)b11p219
ruijierg-rap2260\(e\)_firmware
3.0\(1\)b11p219
ruijierg-rap2260\(g\)_firmware
3.0\(1\)b11p219
ruijierg-rap2200\(g\)_firmware
3.0\(1\)b11p219
ruijierg-rap2200\(e\)_firmware
3.0\(1\)b11p219
ruijierg-rap2200\(f\)_firmware
3.0\(1\)b11p219
ruijierg-eap101_v2_firmware
3.0\(1\)b11p219
ruijierg-eap102_v2_firmware
3.0\(1\)b11p219
ruijierg-eap162\(g\)_firmware
3.0\(1\)b11p219
ruijierg-eap102\(f\)_firmware
3.0\(1\)b11p219
ruijierg-eap102_firmware
3.0\(1\)b11p219
ruijierg-eap101_firmware
3.0\(1\)b11p219
ruijierg-rap630ioda_firmware
3.0\(1\)b11p219
ruijierg-rap630cd_firmware
3.0\(1\)b11p219
ruijierg-rap6261\(e\)_firmware
3.0\(1\)b11p219
ruijierg-rap6261\(cd\)_firmware
3.0\(1\)b11p219
ruijierg-eap262\(g\)_firmware
3.0\(1\)b11p219
ruijierg-eap212\(g\)_firmware
3.0\(1\)b11p219
ruijierg-eap212\(f\)_firmware
3.0\(1\)b11p219
ruijierg-eap202_firmware
3.0\(1\)b11p219
ruijierg-eap201_firmware
3.0\(1\)b11p219
ruijierg-eap602_firmware
3.0\(1\)b11p219
ruijierg-eap662\(g\)_firmware
3.0\(1\)b11p219
ruijierg-nbc256_firmware
3.0\(1\)b11p219
ruijierg-nbc512_firmware
3.0\(1\)b11p219
𝑥
= Vulnerable software versions