High severity8.8NVD Advisory· Published Mar 26, 2023· Updated Jun 17, 2026
CVE-2023-27796
CVE-2023-27796
Description
RG-EW1200G PRO Wireless Routers EW_3.0(1)B11P204, RG-EW1800GX PRO Wireless Routers EW_3.0(1)B11P204, and RG-EW3200GX PRO Wireless Routers EW_3.0(1)B11P204 were discovered to contain multiple command injection vulnerabilities via the data.ip, data.protocal, data.iface and data.package parameters in the runPackDiagnose function of diagnose.lua.
Affected products
5- cpe:2.3:o:ruijienetworks:rg-ew1200g_pro_firmware:ew_3.0\(1\)b11p204:*:*:*:*:*:*:*
- cpe:2.3:o:ruijienetworks:rg-ew1800gx_pro_firmware:ew_3.0\(1\)b11p204:*:*:*:*:*:*:*
- cpe:2.3:o:ruijienetworks:rg-ew3200gx_pro_firmware:ew_3.0\(1\)b11p204:*:*:*:*:*:*:*
- RG-EW1200G PRO Wireless Routers/RG-EW1200G PRO Wireless Routersdescription
- Range: EW_3.0(1)B11P204
Patches
Vulnerability mechanics
References
1- github.com/winmt/my-vuls/tree/main/RG-EW%20PRO%20SeriesnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.