CVE-2023-48849: Ruijie Rg-EG1000C Firmware

Critical severity, CVSS 9.8. EPSS: 1.3% chance of exploitation in the next 30 days.

Ruijie EG Series Routers version EG_3.0(1)B11P216 and before allows unauthenticated attackers to remotely execute arbitrary code due to incorrect filtering.

Affected products

  • Ruijie Rg-EG1000C Firmware: version 3.0(1)b11p216 only
  • Ruijie Rg-EG1000E Firmware: version 3.0(1)b11p216 only
  • Ruijie Rg-EG105G-E Firmware: version 3.0(1)b11p216 only
  • Ruijie Rg-EG105G-P Firmware: version 3.0(1)b11p216 only
  • Ruijie Rg-EG105G-Pe Firmware: version 3.0(1)b11p216 only
  • Ruijie Rg-EG105G Firmware: version 3.0(1)b11p216 only
  • Ruijie Rg-EG105G v2 Firmware: version 3.0(1)b11p216 only
  • Ruijie Rg-EG105GW(T) Firmware: version 3.0(1)b11p216 only
  • Ruijie Rg-EG105GW-X Firmware: version 3.0(1)b11p216 only
  • Ruijie Rg-EG2000CE Firmware: version 3.0(1)b11p216 only
  • Ruijie Rg-EG209GS Firmware: version 3.0(1)b11p216 only
  • Ruijie Rg-EG2100-P Firmware: version 3.0(1)b11p216 only
  • Ruijie Rg-EG210G-E Firmware: version 3.0(1)b11p216 only
  • Ruijie Rg-EG210G-P Firmware: version 3.0(1)b11p216 only
  • Ruijie Rg-EG210G-Pe Firmware: version 3.0(1)b11p216 only
  • Ruijie Rg-EG3000EU Firmware: version 3.0(1)b11p216 only
  • Ruijie Rg-EG3000XE Firmware: version 3.0(1)b11p216 only
  • Ruijie Rg-EG305GH-P-E Firmware: version 3.0(1)b11p216 only
  • Ruijie Rg-EG310GH-E Firmware: version 3.0(1)b11p216 only
  • Ruijie Rg-EG3230 Firmware: version 3.0(1)b11p216 only
  • Ruijie Rg-EG3250 Firmware: version 3.0(1)b11p216 only

Published 2023-12-06. Last modified 2026-06-17.