ID

VAR-202308-3761


TITLE

Several products of Beijing StarNet Ruijie Network Technology Co., Ltd. have command execution vulnerabilities (CNVD-2023-68249)

Trust: 0.6

sources: CNVD: CNVD-2023-68249

DESCRIPTION

Beijing Xingwang Ruijie Network Technology Co., Ltd. is an ICT infrastructure and industry solution provider. Several products of Beijing Xingwang Ruijie Network Technology Co., Ltd. have command execution vulnerabilities that attackers can use to gain server permissions.

Trust: 0.6

sources: CNVD: CNVD-2023-68249

IOT TAXONOMY

category:['Network device']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2023-68249

AFFECTED PRODUCTS

vendor:starnet ruijie networkmodel:ruiyi nbs3/5/6/7 series <switch 3.0 b11p219scope: - version: -

Trust: 0.6

vendor:starnet ruijie networkmodel:ruiyi eg series <eg 3.0 b11p219scope: - version: -

Trust: 0.6

vendor:starnet ruijie networkmodel:ruiyi eap/rap/nbc series <ap 3.0 b11p219scope: - version: -

Trust: 0.6

vendor:xingwang ruijie networkmodel:xingyao ew series <ew 3.0 b11p219scope: - version: -

Trust: 0.6

sources: CNVD: CNVD-2023-68249

CVSS

SEVERITY

CVSSV2

CVSSV3

CNVD: CNVD-2023-68249
value: HIGH

Trust: 0.6

CNVD: CNVD-2023-68249
severity: HIGH
baseScore: 10.0
vectorString: AV:N/AC:L/AU:N/C:C/I:C/A:C
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 10.0
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

sources: CNVD: CNVD-2023-68249

PATCH

title:Patch for Several products of Beijing StarNet Ruijie Network Technology Co., Ltd. have command execution vulnerabilities (CNVD-2023-68249)url:https://www.cnvd.org.cn/patchinfo/show/455126

Trust: 0.6

sources: CNVD: CNVD-2023-68249

EXTERNAL IDS

db:CNVDid:CNVD-2023-68249

Trust: 0.6

sources: CNVD: CNVD-2023-68249

SOURCES

db:CNVDid:CNVD-2023-68249

LAST UPDATE DATE

2023-09-28T23:01:02.438000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2023-68249date:2023-09-08T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2023-68249date:2023-08-27T00:00:00