CVE-2024-4505 | Ruijie RG-UAC up to 20240428 ip_addr_add_commit.php prelen/ethname os command injection
A vulnerability was found in Ruijie RG-UAC up to 20240428. It has been declared as critical. Affected is an unknown function of the file /view/IPV6/ipv6Addr/ip_addr_add_commit.php. Such manipulation of the argument prelen/ethname leads to os command injection.
This vulnerability is listed as CVE-2024-4505. The attack may be performed from a remote location. In addition, an exploit is available.
The vendor was contacted early about this disclosure but did not respond in any way.