V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
CVE-2025-56752
CVE
Critical

A vulnerability in the Ruijie RG-ES series switch firmware ESW_1.0(1)B1P39 enables remote attackers to fully bypass authentication mechanis…

CVSS
9.4
Critical
EPSS
0.00
p38
Published
2025-01-01
Updated
2025-01-01
Description

A vulnerability in the Ruijie RG-ES series switch firmware ESW_1.0(1)B1P39 enables remote attackers to fully bypass authentication mechanisms, providing them with unrestricted access to alter administrative settings and potentially seize control of affected devices via crafted HTTP POST request to /user.cgi.

Tags · CWE
Pre-auth
CWE-287
CAPEC-22
CAPEC-57
CAPEC-94
CAPEC-114
CAPEC-115
CAPEC-151
CAPEC-194
CAPEC-593
CAPEC-633
CAPEC-650
Affected products
Rg-es205gc-p_firmwareRg-es205gc_firmwareRg-es206gc-p_firmwareRg-es206gs-p_firmwareRg-es206mg-p_firmwareRg-es208gc_firmwareRg-es209gc-p_firmwareRg-es209mg-p_firmwareRg-es210gc-lp_firmwareRg-es210gs-p_firmwareRg-es216gc-v2_firmwareRg-es216gc_firmwareRg-es218gc-p_firmwareRg-es220gs-p_firmwareRg-es224gc-v2_firmwareRg-es224gc_firmwareRg-es226gc-p_firmwareRg-es228gs-p_firmwareRg-nis2100-4gt2sfp-hp_firmwareRg-nis2100-8gt2sfp-hp_firmware
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:H
Timeline
2025-01-01
Published
2025-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: N
Network (N)
Attack Complexity
AC: L
Low (L)
Privileges Required
PR: N
None (N)
User Interaction
UI: N
None (N)
Scope
S: U
Unchanged (U)
Confidentiality Impact
C: H
High (H)
Integrity Impact
I: L
Low (L)
Availability Impact
A: H
High (H)
Exploit indicators
EPSS
0.005 · p38
Known exploited (KEV)
No
MITRE ATT&CK
Inferred via CAPEC
└ via CAPEC-57 · CWE-287
└ via CAPEC-633 · CWE-287
└ via CAPEC-593 · CWE-287
└ via CAPEC-650 · CWE-287
└ via CAPEC-114 · CWE-287
└ via CAPEC-593 · CWE-287
└ via CAPEC-94 · CWE-287
└ via CAPEC-593 · CWE-287
Known exploits — Сканер-ВС
No Сканер-ВС checks registered for this vulnerability yet.
Affected products
ProductVendorStatus
rg-es205gc-p_firmware*Tracked
rg-es205gc_firmware*Tracked
rg-es206gc-p_firmware*Tracked
rg-es206gs-p_firmware*Tracked
rg-es206mg-p_firmware*Tracked
rg-es208gc_firmware*Tracked
rg-es209gc-p_firmware*Tracked
rg-es209mg-p_firmware*Tracked
rg-es210gc-lp_firmware*Tracked
rg-es210gs-p_firmware*Tracked
rg-es216gc-v2_firmware*Tracked
rg-es216gc_firmware*Tracked
rg-es218gc-p_firmware*Tracked
rg-es220gs-p_firmware*Tracked
rg-es224gc-v2_firmware*Tracked
rg-es224gc_firmware*Tracked
rg-es226gc-p_firmware*Tracked
rg-es228gs-p_firmware*Tracked
rg-nis2100-4gt2sfp-hp_firmware*Tracked
rg-nis2100-8gt2sfp-hp_firmware*Tracked
Source databases
CVE