← Back to CVE List

CVE-2019-16639

Published: 2024-07-16T17:15Z
Last Modified: 2024-11-21T04:30Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
An issue was found on the Ruijie EG-2000 series gateway. There is a newcli.php API interface without access control, which can allow an attacker (who only has web interface access) to use TELNET commands and/or show admin passwords via the mode_url=exec&command= substring. This affects EG-2000SE EG_RGOS 11.9 B11P1. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt