CVE Feed

    Dashboard / CVE / CVE-2025-56752

    CVE-2025-56752

    A vulnerability in the Ruijie RG-ES series switch firmware ESW_1.0(1)B1P39 enables remote attackers to fully bypass authentication mechanisms, providing them with unrestricted access to alter administrative settings and potentially seize control of affected devices via crafted HTTP POST request to /user.cgi.

    Published:Sep 3, 2025
    Last Modified:Sep 29, 2025
    EPS:Sep 3, 2025
    EPSS Score:0.00324
    CVSS Score:9.4

    Affected Products

    Vendor
    Ruijie
    Product
    Rg-es
    Vendor
    Ruijie
    Product
    Rg-es205gc
    Vendor
    Ruijie
    Product
    Rg-es205gc-p
    Vendor
    Ruijie
    Product
    Rg-es205gc-p Firmware
    Vendor
    Ruijie
    Product
    Rg-es205gc Firmware
    Vendor
    Ruijie
    Product
    Rg-es206gc-p
    Vendor
    Ruijie
    Product
    Rg-es206gc-p Firmware
    Vendor
    Ruijie
    Product
    Rg-es206gs-p
    Vendor
    Ruijie
    Product
    Rg-es206gs-p Firmware
    Vendor
    Ruijie
    Product
    Rg-es206mg-p
    Vendor
    Ruijie
    Product
    Rg-es206mg-p Firmware
    Vendor
    Ruijie
    Product
    Rg-es208gc
    Vendor
    Ruijie
    Product
    Rg-es208gc Firmware
    Vendor
    Ruijie
    Product
    Rg-es209gc-p
    Vendor
    Ruijie
    Product
    Rg-es209gc-p Firmware
    Vendor
    Ruijie
    Product
    Rg-es209mg-p
    Vendor
    Ruijie
    Product
    Rg-es209mg-p Firmware
    Vendor
    Ruijie
    Product
    Rg-es210gc-lp
    Vendor
    Ruijie
    Product
    Rg-es210gc-lp Firmware
    Vendor
    Ruijie
    Product
    Rg-es210gs-p
    Vendor
    Ruijie
    Product
    Rg-es210gs-p Firmware
    Vendor
    Ruijie
    Product
    Rg-es216gc
    Vendor
    Ruijie
    Product
    Rg-es216gc-v2
    Vendor
    Ruijie
    Product
    Rg-es216gc-v2 Firmware
    Vendor
    Ruijie
    Product
    Rg-es216gc Firmware
    Vendor
    Ruijie
    Product
    Rg-es218gc-p
    Vendor
    Ruijie
    Product
    Rg-es218gc-p Firmware
    Vendor
    Ruijie
    Product
    Rg-es220gs-p
    Vendor
    Ruijie
    Product
    Rg-es220gs-p Firmware
    Vendor
    Ruijie
    Product
    Rg-es224gc
    Vendor
    Ruijie
    Product
    Rg-es224gc-v2
    Vendor
    Ruijie
    Product
    Rg-es224gc-v2 Firmware
    Vendor
    Ruijie
    Product
    Rg-es224gc Firmware
    Vendor
    Ruijie
    Product
    Rg-es226gc-p
    Vendor
    Ruijie
    Product
    Rg-es226gc-p Firmware
    Vendor
    Ruijie
    Product
    Rg-es228gs-p
    Vendor
    Ruijie
    Product
    Rg-es228gs-p Firmware
    Vendor
    Ruijie
    Product
    Rg-nis2100-4gt2sfp-hp
    Vendor
    Ruijie
    Product
    Rg-nis2100-4gt2sfp-hp Firmware
    Vendor
    Ruijie
    Product
    Rg-nis2100-8gt2sfp-hp
    Vendor
    Ruijie
    Product
    Rg-nis2100-8gt2sfp-hp Firmware

    Exploits

    No exploit reference

    Common Weakness Enumeration

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High