Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Ruijie

First CVE: Nov 16, 2021Active for: 5 yearsTotal CVEs: 127
59.3
VTI Score
TOP TARGET

Ruijie's vulnerability footprint spans a substantial portfolio of network security and access-control appliances, predominantly centered on its UAC (Unified Access Control) product line, which occupies a prominent position in enterprise network infrastructure deployments. Vulnerabilities affecting the vendor skew toward serious outcomes, with an elevated share reaching critical severity, reflecting the privileged access and control-plane exposure inherent to security gateway and authentication appliances. The exposure recurs across firmware and hardware variants of the UAC 6000 series through weakness classes including OS command injection, command injection, improper access control, and code injection—attack vectors typical of network appliances that parse and execute administrative input or system commands. Defenders should prioritize patching and network segmentation for these appliances given their position in security-critical infrastructure and the severity profile of disclosed flaws. Current exploitation activity and exposure counts are shown alongside this summary.

FAUCET AI Generated
116
Total CVEs
More Total CVEs than 99% of tracked vendors
0.1
Avg CVEs / Product / Year
Bottom 1%
8.4
Avg CVSS Score
Higher Avg CVSS Score than 81% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Ruijie over time

Volume of CVEsAvg CVSS Base Score
First CVE
Nov 16, 2021
4 years ago
Most Recent CVE
Dec 15, 2025
221 days ago

Products(426 total)

Top CVEs

Signals from CVEs in this vendor scope (116 CVEs).

116 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2023-4415HIGH
A vulnerability was found in Ruijie RG-EW1200G 07161417 r483. It has been rated as critical. Affected by this issue is some unknown functionality of the file /api/sys/login. The ma
Aug 18, 20238.870NOYES
CVE-2023-4169HIGH
A vulnerability was found in Ruijie RG-EW1200G 1.0(1)B1P5. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /api/sys/set_pas
Aug 5, 20238.862NOYES
CVE-2021-43164HIGH
A Remote Code Execution (RCE) vulnerability exists in Ruijie Networks Ruijie RG-EW Series Routers up to ReyeeOS 1.55.1915 / EW_3.0(1)B11P55 via the updateVersion function in /cgi-b
May 4, 20228.861NOYES
CVE-2024-24116CRITICAL
An issue in Ruijie RG-NBS2009G-P RGOS v.10.4(1)P2 Release(9736) allows a remote attacker to gain privileges via the system/config_menu.htm.
Oct 2, 20249.853NOYES
CVE-2023-3450HIGH
A vulnerability was found in Ruijie RG-BCR860 2.5.13 and classified as critical. This issue affects some unknown processing of the component Network Diagnostic Page. The manipulati
Jun 28, 20237.247NONO
CVE-2025-9424CRITICAL
A vulnerability was identified in Ruijie WS7204-A 2017.06.15. Affected by this vulnerability is an unknown functionality of the file /itbox_pi/branch_import.php?a=branch_list. Such
Aug 25, 20259.844NONO
CVE-2023-3306CRITICAL
A vulnerability was found in Ruijie RG-EW1200G EW_3.0(1)B11P204. It has been declared as critical. This vulnerability affects unknown code of the file app.09df2a9e44ab48766f5f.js o
Jun 18, 20239.840NONO
CVE-2025-56752CRITICAL
A vulnerability in the Ruijie RG-ES series switch firmware ESW_1.0(1)B1P39 enables remote attackers to fully bypass authentication mechanisms, providing them with unrestricted acce
Sep 3, 20259.433NONO
CVE-2021-43163CRITICAL
A Remote Code Execution (RCE) vulnerability exists in Ruijie Networks Ruijie RG-EW Series Routers up to ReyeeOS 1.55.1915 / EW_3.0(1)B11P55 via the checkNet function in /cgi-bin/lu
May 4, 20229.833NONO
CVE-2024-4815CRITICAL
A vulnerability, which was classified as critical, has been found in Ruijie RG-UAC up to 20240506. Affected by this issue is some unknown functionality of the file /view/bugSolve/v
May 14, 20249.832NONO
View all 116 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products116 CVEs
71%
22%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local3 (2.6%)
Network111 (95.7%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network2 (1.7%)
Attack Complexity
Low115 (99.1%)
High1 (0.9%)
Unknown0 (0.0%)
User Interaction
None115 (99.1%)
Unknown0 (0.0%)
Required1 (0.9%)
Privileges Required
Low53 (45.7%)
High20 (17.2%)
None43 (37.1%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (116 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
3 CVEs
2.6% of CVEs· 95th percentile
ExploitDB
1 CVE
0.9% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Ruijie.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Ruijie — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Ruijie's Products

View all 4 CNAs →

Top CWEs