Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x could allow an attacker to subscribe to partial possible topics in Ruijie MQTT broker, and receive partial messages being sent to and from devices.
References
Link | Resource |
---|---|
https://www.cisa.gov/news-events/ics-advisories/icsa-24-338-01 | Third Party Advisory US Government Resource |
Configurations
History
10 Dec 2024, 19:44
Type | Values Removed | Values Added |
---|---|---|
First Time |
Ruijienetworks
Ruijienetworks reyee Os |
|
CPE | cpe:2.3:o:ruijienetworks:reyee_os:*:*:*:*:*:*:*:* | |
References | () https://www.cisa.gov/news-events/ics-advisories/icsa-24-338-01 - Third Party Advisory, US Government Resource |
06 Dec 2024, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-12-06 19:15
Updated : 2024-12-10 19:44
NVD link : CVE-2024-47791
Mitre link : CVE-2024-47791
CVE.ORG link : CVE-2024-47791
JSON object : View
Products Affected
ruijienetworks
- reyee_os
CWE
CWE-155
Improper Neutralization of Wildcards or Matching Symbols