CVE-2024-47547: Ruijie Reyee OS Weak Password Recovery Mechanism for Forgotten Password
Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x contains a weak mechanism for its users to change their passwords which leaves authentication vulnerable to brute force attacks.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-47547?
The severity of CVE-2024-47547 is rated as high due to its potential for exploitation via brute force attacks on user authentication.
How do I fix CVE-2024-47547?
To fix CVE-2024-47547, upgrade Ruijie Reyee OS to version 2.320.x or later to eliminate the weak password change mechanism.
What impact does CVE-2024-47547 have on my system?
CVE-2024-47547 leaves systems vulnerable to unauthorized access due to weak password change mechanisms.
Who is affected by CVE-2024-47547?
CVE-2024-47547 affects users of Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x.
What should I do if I cannot upgrade from Ruijie Reyee OS versions 2.206.x?
If unable to upgrade, implement strong password policies and monitor for any unauthorized access to mitigate risks associated with CVE-2024-47547.