Vulnerabilities > CVE-2019-14920 - Unspecified vulnerability in Billion Sg600 R2 Firmware 3.02

047910
CVSS 9.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
SINGLE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
billion
critical

Summary

Billion Smart Energy Router SG600R2 Firmware v3.02.rc6 allows an authenticated attacker to gain root execution privileges over the device via a hidden etc_ro/web/adm/system_command.asp shell feature.

Vulnerable Configurations

Part Description Count
OS
Billion
1
Hardware
Billion
1