Buffer overflow vulnerability in Ruijie RG-NBR2600S Gateway 10.3(4b12) due to the lack of length verification, which is related to the configuration of source address NAT rules. Attackers who successfully exploit this vulnerability can cause the remote target device to crash or execute arbitrary commands.
Metrics
Affected Vendors & Products
References
History
Fri, 20 Jun 2025 18:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Ruijie
Ruijie nbr2600s Ruijie nbr2600s Firmware |
|
CPEs | cpe:2.3:h:ruijie:nbr2600s:-:*:*:*:*:*:*:* cpe:2.3:o:ruijie:nbr2600s_firmware:10.3\(4b12\):*:*:*:*:*:*:* |
|
Vendors & Products |
Ruijie
Ruijie nbr2600s Ruijie nbr2600s Firmware |
Thu, 13 Feb 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-120 | |
Metrics |
cvssV3_1
|
Tue, 11 Feb 2025 19:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Buffer overflow vulnerability in Ruijie RG-NBR2600S Gateway 10.3(4b12) due to the lack of length verification, which is related to the configuration of source address NAT rules. Attackers who successfully exploit this vulnerability can cause the remote target device to crash or execute arbitrary commands. | |
References |
|

Status: PUBLISHED
Assigner: mitre
Published: 2025-02-11T00:00:00.000Z
Updated: 2025-02-13T17:44:50.509Z
Reserved: 2025-02-07T00:00:00.000Z
Link: CVE-2025-25527

Updated: 2025-02-13T17:44:26.814Z

Status : Analyzed
Published: 2025-02-11T20:15:38.973
Modified: 2025-06-20T17:08:45.600
Link: CVE-2025-25527

No data.