CVE-2024-24117

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Oct 2, 2024
Updated: Mar 13, 2025
CWE ID 732

Summary

CVE-2024-24117 is a newly disclosed vulnerability affecting the Ruijie RG-NBS2009G-P RGOS v.10.4(1)P2 Release (9736). This issue involves insecure permissions that can be exploited by a remote attacker. By targeting the login check state component, an attacker can gain privileges, potentially leading to unauthorized access and system compromise. This vulnerability poses a significant risk and requires immediate attention from users and administrators to apply the necessary patches or workarounds.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share