Ruijie Reyee OS Exposes Users to Weak Credentials Vulnerability
CVE-2024-45722
7.5HIGH
What is CVE-2024-45722?
Ruijie Reyee OS, a networking operating system developed by Ruijie Networks, has been identified to use a weak credential mechanism affecting its MQTT (Message Queuing Telemetry Transport) protocol. This vulnerability allows attackers to potentially derive MQTT credentials easily, which can lead to unauthorized access and exploitation of the network resources. The affected versions span from 2.206.x up to, but not including, 2.320.x. Users of these versions should be aware of the risks and take necessary precautions to secure their systems.