Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x contains a a feature that could enable sub accounts or attackers to view and exfiltrate sensitive information from all cloud accounts registered to Ruijie's services
Metrics
Affected Vendors & Products
References
History
Tue, 10 Dec 2024 19:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Ruijienetworks
Ruijienetworks reyee Os |
|
CPEs | cpe:2.3:o:ruijienetworks:reyee_os:*:*:*:*:*:*:*:* | |
Vendors & Products |
Ruijienetworks
Ruijienetworks reyee Os |
Fri, 06 Dec 2024 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 06 Dec 2024 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x contains a a feature that could enable sub accounts or attackers to view and exfiltrate sensitive information from all cloud accounts registered to Ruijie's services | |
Title | Ruijie Reyee OS Exposure of Private Personal Information to an Unauthorized Actor | |
Weaknesses | CWE-359 | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2024-12-06T18:05:35.351Z
Updated: 2024-12-06T20:25:52.000Z
Reserved: 2024-11-20T23:41:59.124Z
Link: CVE-2024-42494
Vulnrichment
Updated: 2024-12-06T19:19:06.170Z
NVD
Status : Analyzed
Published: 2024-12-06T18:15:24.707
Modified: 2024-12-10T18:38:23.260
Link: CVE-2024-42494
Redhat
No data.