Ruijie Reyee OS Vulnerability Could Lead to Session Hijacking and DoS Attacks
CVE-2024-51727
7.5HIGH
Summary
The Ruijie Reyee OS, specifically in versions 2.206.x through 2.320.x, exhibits a vulnerability that can be exploited to invalidate a legitimate user's session. This action can lead to a denial-of-service condition on the affected user's account, effectively preventing them from accessing the services. The flaw can be leveraged by attackers to disrupt normal operations, necessitating prompt remediation of the affected systems.
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published