Vulnerability Details CVE-2023-38902
A command injection vulnerability in RG-EW series home routers and repeaters v.EW_3.0(1)B11P219, RG-NBS and RG-S1930 series switches v.SWITCH_3.0(1)B11P219, RG-EG series business VPN routers v.EG_3.0(1)B11P219, EAP and RAP series wireless access points v.AP_3.0(1)B11P219, and NBC series wireless controllers v.AC_3.0(1)B11P219 allows an authorized attacker to execute arbitrary commands on remote devices by sending a POST request to /cgi-bin/luci/api/cmd via the remoteIp field.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.018
EPSS Ranking 82.1%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2023-38902
-
cpe:2.3:h:ruijie:rg-eap101:-
-
cpe:2.3:h:ruijie:rg-eap101_v2:-
-
cpe:2.3:h:ruijie:rg-eap102(f):-
-
cpe:2.3:h:ruijie:rg-eap102:-
-
cpe:2.3:h:ruijie:rg-eap102_v2:-
-
cpe:2.3:h:ruijie:rg-eap162(g):-
-
cpe:2.3:h:ruijie:rg-eap201:-
-
cpe:2.3:h:ruijie:rg-eap202:-
-
cpe:2.3:h:ruijie:rg-eap212(f):-
-
cpe:2.3:h:ruijie:rg-eap212(g):-
-
cpe:2.3:h:ruijie:rg-eap262(g):-
-
cpe:2.3:h:ruijie:rg-eap602:-
-
cpe:2.3:h:ruijie:rg-eap662(g):-
-
cpe:2.3:h:ruijie:rg-eg105g-e:-
-
cpe:2.3:h:ruijie:rg-eg105g-pe:-
-
cpe:2.3:h:ruijie:rg-eg105g_v2:-
-
cpe:2.3:h:ruijie:rg-eg210g-e:-
-
cpe:2.3:h:ruijie:rg-eg210g-p:-
-
cpe:2.3:h:ruijie:rg-eg210g-pe:-
-
cpe:2.3:h:ruijie:rg-ew1200:-
-
cpe:2.3:h:ruijie:rg-ew1200g_pro:-
-
cpe:2.3:h:ruijie:rg-ew1200r:-
-
cpe:2.3:h:ruijie:rg-ew1300g:-
-
cpe:2.3:h:ruijie:rg-ew1800gx_pro:-
-
cpe:2.3:h:ruijie:rg-ew3000gx_pro:-
-
cpe:2.3:h:ruijie:rg-ew300_pro:-
-
cpe:2.3:h:ruijie:rg-ew300r:-
-
cpe:2.3:h:ruijie:rg-ew3200gx_pro:-
-
cpe:2.3:h:ruijie:rg-nb3200-24gt4xs:-
-
cpe:2.3:h:ruijie:rg-nbc256:-
-
cpe:2.3:h:ruijie:rg-nbc512:-
-
cpe:2.3:h:ruijie:rg-nbs1850gc:-
-
cpe:2.3:h:ruijie:rg-nbs1850gc_v2:-
-
cpe:2.3:h:ruijie:rg-nbs2000:-
-
cpe:2.3:h:ruijie:rg-nbs2009g-p:-
-
cpe:2.3:h:ruijie:rg-nbs200:-
-
cpe:2.3:h:ruijie:rg-nbs2026g-p:-
-
cpe:2.3:h:ruijie:rg-nbs2026g:-
-
cpe:2.3:h:ruijie:rg-nbs226f:-
-
cpe:2.3:h:ruijie:rg-nbs228f:-
-
cpe:2.3:h:ruijie:rg-nbs252f:-
-
cpe:2.3:h:ruijie:rg-nbs3100-24gt4sfp-p:-
-
cpe:2.3:h:ruijie:rg-nbs3100-24gt4sfp-p_v2:-
-
cpe:2.3:h:ruijie:rg-nbs3100-24gt4sfp:-
-
cpe:2.3:h:ruijie:rg-nbs3100-48gt4sfp:-
-
cpe:2.3:h:ruijie:rg-nbs3100-8gt2sfp-p:-
-
cpe:2.3:h:ruijie:rg-nbs3100-8gt2sfp:-
-
cpe:2.3:h:ruijie:rg-nbs3200-24gt4xs-p:-
-
cpe:2.3:h:ruijie:rg-nbs3200-24sfp/8gt4xs:-
-
cpe:2.3:h:ruijie:rg-nbs3200-48gt4xs-p:-
-
cpe:2.3:h:ruijie:rg-nbs3200-48gt4xs:-
-
cpe:2.3:h:ruijie:rg-nbs5100-24gt4sfp:-
-
cpe:2.3:h:ruijie:rg-nbs5100-48gt4sfp:-
-
cpe:2.3:h:ruijie:rg-nbs5200-24gt4x:-
-
cpe:2.3:h:ruijie:rg-nbs5200-24sfp/8gt4xs:-
-
cpe:2.3:h:ruijie:rg-nbs5200-48gt4xs:-
-
cpe:2.3:h:ruijie:rg-nbs5300-48mg6xs:-
-
cpe:2.3:h:ruijie:rg-nbs5528xg:-
-
cpe:2.3:h:ruijie:rg-nbs5552xg:-
-
cpe:2.3:h:ruijie:rg-nbs5552xg_v2.0:-
-
cpe:2.3:h:ruijie:rg-nbs5628xg:-
-
cpe:2.3:h:ruijie:rg-nbs5652xg:-
-
cpe:2.3:h:ruijie:rg-nbs5710-24gt4sfp-e-p:-
-
cpe:2.3:h:ruijie:rg-nbs5710-24gt4sfp-e:-
-
cpe:2.3:h:ruijie:rg-nbs5710-48gt4sfp-e:-
-
cpe:2.3:h:ruijie:rg-nbs5750-28gt4xs-e:-
-
cpe:2.3:h:ruijie:rg-nbs5750v2-24gt4xs-e:-
-
cpe:2.3:h:ruijie:rg-nbs5750v2-24sfp4xs-e:-
-
cpe:2.3:h:ruijie:rg-nbs5750v2-48gt4xs-e:-
-
cpe:2.3:h:ruijie:rg-nbs5816xs:-
-
cpe:2.3:h:ruijie:rg-nbs6002:-
-
cpe:2.3:h:ruijie:rg-nbs6100-20xs4vs2qxs-s:-
-
cpe:2.3:h:ruijie:rg-nbs7003:-
-
cpe:2.3:h:ruijie:rg-nbs7006:-
-
cpe:2.3:h:ruijie:rg-rap100:-
-
cpe:2.3:h:ruijie:rg-rap1200(e):-
-
cpe:2.3:h:ruijie:rg-rap1200(f):-
-
cpe:2.3:h:ruijie:rg-rap120:-
-
cpe:2.3:h:ruijie:rg-rap120v2:-
-
cpe:2.3:h:ruijie:rg-rap1260(g):-
-
cpe:2.3:h:ruijie:rg-rap2200(e):-
-
cpe:2.3:h:ruijie:rg-rap2200(f):-
-
cpe:2.3:h:ruijie:rg-rap2200(g):-
-
cpe:2.3:h:ruijie:rg-rap2260(e):-
-
cpe:2.3:h:ruijie:rg-rap2260(g):-
-
cpe:2.3:h:ruijie:rg-rap6260(g):-
-
cpe:2.3:h:ruijie:rg-rap6261(cd):-
-
cpe:2.3:h:ruijie:rg-rap6261(e):-
-
cpe:2.3:h:ruijie:rg-rap630cd:-
-
cpe:2.3:h:ruijie:rg-rap630ioda:-
-
cpe:2.3:h:ruijie:rg-s1930-24gt4sfp:-
-
cpe:2.3:h:ruijie:rg-s1930-24t4sfp-p:-
-
cpe:2.3:h:ruijie:rg-s1930-24t4sfp:-
-
cpe:2.3:h:ruijie:rg-s1930-8gt2sfp-p:-
-
cpe:2.3:h:ruijie:rg-s1930-8gt2sfp:-
-
cpe:2.3:h:ruijie:rg-s1930-8t2sfp-p:-
-
cpe:2.3:o:ruijie:rg-eap101_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-eap101_v2_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-eap102(f)_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-eap102_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-eap102_v2_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-eap162(g)_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-eap201_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-eap202_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-eap212(f)_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-eap212(g)_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-eap262(g)_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-eap602_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-eap662(g)_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-eg105g-e_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-eg105g-pe_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-eg105g_v2_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-eg210g-e_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-eg210g-p_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-eg210g-pe_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-ew1200_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-ew1200g_pro_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-ew1200r_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-ew1300g_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-ew1800gx_pro_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-ew3000gx_pro_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-ew300_pro_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-ew300r_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-ew3200gx_pro_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nb3200-24gt4xs_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbc256_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbc512_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs1850gc_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs1850gc_v2_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs2000_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs2009g-p_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs200_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs2026g-p_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs2026g_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs226f_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs228f_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs252f_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs3100-24gt4sfp-p_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs3100-24gt4sfp-p_v2_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs3100-24gt4sfp_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs3100-48gt4sfp_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs3100-8gt2sfp-p_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs3100-8gt2sfp_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs3200-24gt4xs-p_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs3200-24sfp/8gt4xs_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs3200-48gt4xs-p_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs3200-48gt4xs_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs5100-24gt4sfp_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs5100-48gt4sfp_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs5200-24gt4x_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs5200-24sfp/8gt4xs_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs5200-48gt4xs_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs5300-48mg6xs_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs5528xg_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs5552xg_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs5552xg_v2.0_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs5628xg_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs5652xg_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs5710-24gt4sfp-e-p_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs5710-24gt4sfp-e_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs5710-48gt4sfp-e_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs5750-28gt4xs-e_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs5750v2-24gt4xs-e_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs5750v2-24sfp4xs-e_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs5750v2-48gt4xs-e_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs5816xs_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs6002_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs6100-20xs4vs2qxs-s_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs7003_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-nbs7006_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-rap100_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-rap1200(e)_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-rap1200(f)_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-rap120_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-rap120v2_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-rap1260(g)_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-rap2200(e)_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-rap2200(f)_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-rap2200(g)_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-rap2260(e)_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-rap2260(g)_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-rap6260(g)_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-rap6261(cd)_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-rap6261(e)_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-rap630cd_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-rap630ioda_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-s1930-24gt4sfp_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-s1930-24t4sfp-p_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-s1930-24t4sfp_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-s1930-8gt2sfp-p_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-s1930-8gt2sfp_firmware:3.0(1)b11p219
-
cpe:2.3:o:ruijie:rg-s1930-8t2sfp-p_firmware:3.0(1)b11p219