PT-2024-2490 · Ruijie · Ruijie Rg-Eg350

H0E4A0R1T

·

Published

2024-03-18

·

Updated

2025-11-03

·

CVE-2024-2910

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Ruijie RG-EG350 versions prior to 20240319
Description A critical issue exists in the vpnAction function of the /itbox pi/vpn quickset service.php?a=set vpn file within the HTTP POST Request Handler component. The issue stems from a failure to neutralize special elements used in operating system commands. Exploitation allows a remote attacker to execute arbitrary commands through manipulation of the ip/port/user/pass/dns/startIp argument. The exploit has been publicly disclosed.
Recommendations Ruijie RG-EG350 versions prior to 20240319: Update to version 20240319 or later. As a temporary workaround, restrict access to the /itbox pi/vpn quickset service.php?a=set vpn endpoint.

Exploit

Fix

OS Command Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2024-02470
CVE-2024-2910

Affected Products

Ruijie Rg-Eg350