Ruijie RG-NBR700GW 10.3(4b12) router lacks cookie...
Critical severity
Unreviewed
Published
Mar 30, 2024
to the GitHub Advisory Database
•
Updated Nov 4, 2024
Description
Published by the National Vulnerability Database
Mar 30, 2024
Published to the GitHub Advisory Database
Mar 30, 2024
Last updated
Nov 4, 2024
Ruijie RG-NBR700GW 10.3(4b12) router lacks cookie verification when resetting the password, resulting in an administrator password reset vulnerability. An attacker can use this vulnerability to log in to the device and disrupt the business of the enterprise.
References