CVE-2024-46874
Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x could allow MQTT clients connecting with device credent
Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x could allow MQTT clients connecting with device credentials to send messages to some topics. Attackers with device credentials could issue commands to other devices on behalf of Ruijie's cloud.
HIGH · CVSS 8.1
EPSS 0.00114
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0