CNNVD-202508-2905 Information

CNNVD ID

CNNVD-202508-2905

CVE-2025-9424

  • CNNVD Published: 2025-08-25

Description (Chinese)

Ruijie WS7204-A是中国锐捷(Ruijie)公司的一款无线控制器。 Ruijie WS7204-A 2017.06.15版本存在安全漏洞,该漏洞源于对文件/itbox_pi/branch_import.php?a=branch_list中参数province的错误操作导致os命令注入。

Description (English)

Ruijie WS7204-A is a wireless controller of the Chinese company Ruijie. The security loophole in Ruijie WS7204-A 2017.06.15 resulted from the mishandling of the parameter province in document/itbox pi/branch import.php?a=branch list leading to the injection of the Os command.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

锐捷

Published

2025-08-25

Last Modified

2026-02-24

References

https://vuldb.com/?submit.634135 https://vuldb.com/?id.321267 https://vuldb.com/?ctiid.321267 https://github.com/Hwwg/cve/issues/1 https://nvd.nist.gov/vuln/detail/CVE-2025-9424

Share on: