CVE-2023-53881
15.12.2025, 21:15
ReyeeOS 1.204.1614 contains an unencrypted CWMP communication vulnerability that allows attackers to intercept and manipulate device communication through a man-in-the-middle attack. Attackers can create a fake CWMP server to inject and execute arbitrary commands on Ruijie Reyee Cloud devices by exploiting the unprotected HTTP polling requests.Enginsight
| Vendor | Product | Version |
|---|---|---|
| ruijienetworks | reyee_os | 1.204.1614 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration