S4E just found a high top 10 tcp port service scan
high·Product Based Web Vulnerabilities·Updated Mar 10, 2024

CVE-2023-4415 Scanner

Detects 'Login Bypass' vulnerability in Ruijie RG-EW1200G Router affects v. 07161417 r483

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
3.3k
Times Used
continuous scan runs
3.4k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2023-4415
8.8
CVSShigh
Exploitable remotely over the internet · no authentication required.

A vulnerability was found in Ruijie RG-EW1200G 07161417 r483. It has been rated as critical. Affected by this issue is some unknown functionality of the file /api/sys/login. The manipulation leads to improper authentication. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-237518 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
Affected
RG-EW1200Gby Ruijie
07161417 r483
Updated Aug 22, 2026View on NVD →
Detail

The Ruijie RG-EW1200G router is a networking device that provides wireless and wired connectivity for home and small office environments. It supports various networking protocols and security features to ensure a secure and stable connection. The router is designed to offer high-speed internet access, network management, and enhanced security protocols to protect network data. It is commonly used in residential and small business settings for its reliability and ease of use. The identified vulnerability in the firmware version 07161417 r483 allows unauthorized access, posing a significant security risk.

CVE-2023-4415 describes a critical login bypass vulnerability in the Ruijie RG-EW1200G router's firmware. This flaw enables attackers to bypass authentication mechanisms and gain unauthorized access to the router's administrative interface. The vulnerability results from improper authentication checks within the /api/sys/login file. Exploitation of this vulnerability allows remote attackers to perform administrative actions without proper credentials, compromising the router's security and the network it manages.

The login bypass vulnerability is exploited through a crafted POST request to the /api/sys/login endpoint of the router. By manipulating the request parameters, an attacker can trick the system into granting access without valid authentication. The exploit utilizes a specific set of values for username and password fields, along with a hardcoded timestamp, to bypass the login process. This indicates a lack of proper input validation and authentication controls in the router's firmware. The successful exploitation results in an unauthorized user gaining full administrative access to the router.

The exploitation of this vulnerability can lead to severe consequences, including unauthorized access to network settings, modification of router configurations, interception of sensitive information, and potential introduction of malware into the network. Attackers can exploit this vulnerability to compromise connected devices, redirect traffic to malicious sites, or create a foothold within the network for further attacks. The security and privacy of the network and its users are at significant risk due to this vulnerability.

S4E provides an essential service for detecting vulnerabilities like CVE-2023-4415 in network devices. By utilizing our platform, users gain access to comprehensive security assessments, real-time monitoring, and actionable recommendations to mitigate risks. Membership offers the benefits of enhanced security measures, expert guidance, and the peace of mind that comes from knowing your digital assets are protected. Secure your network and safeguard your data with S4E, your partner in cybersecurity excellence.

 

References

Solution Advice
  1. Immediately update the Ruijie RG-EW1200G router firmware to the latest version available from the manufacturer that addresses this vulnerability.
  2. Regularly check for and apply security updates for all network devices.
  3. Monitor network traffic for unusual or unauthorized activity that may indicate exploitation attempts.
  4. Implement strong authentication mechanisms and change default credentials to complex, unique passwords.
  5. Consider employing network segmentation and firewall rules to limit access to critical network devices and reduce the impact of potential breaches.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2023-4415 scanner - Login Bypass vulnerability in Ruijie RG-EW1200G Router S4E