Vulnerabilities > Baicells

DATE CVE VULNERABILITY TITLE RISK
2023-03-01 CVE-2023-1097 Command Injection vulnerability in Baicells Eg7035-M11 Firmware Bceodu1.0.8
Baicells EG7035-M11 devices with firmware through BCE-ODU-1.0.8 are vulnerable to improper code exploitation via HTTP GET command injections.
network
low complexity
baicells CWE-77
critical
9.8
2023-02-11 CVE-2023-0776 Command Injection vulnerability in Baicells products
Baicells Nova 436Q, Nova 430E, Nova 430I, and Neutrino 430 LTE TDD eNodeB devices with firmware through QRTB 2.12.7 are vulnerable to remote shell code exploitation via HTTP command injections.
network
low complexity
baicells CWE-77
critical
10.0
2023-01-26 CVE-2023-24022 Use of Hard-coded Credentials vulnerability in Baicells RTD Firmware and RTS Firmware
Baicells Nova 227, Nova 233, and Nova 243 LTE TDD eNodeB devices with firmware through RTS/RTD 3.7.11.3 have hardcoded credentials that are easily discovered and can be used by remote attackers to authenticate via ssh.
network
low complexity
baicells CWE-798
critical
9.8
2023-01-26 CVE-2023-24508 Cross-site Scripting vulnerability in Baicells RTD Firmware and RTS Firmware
Baicells Nova 227, Nova 233, and Nova 243 LTE TDD eNodeB and Nova 246 devices with firmware through RTS/RTD 3.6.6 are vulnerable to remote shell code exploitation via HTTP command injections.
network
low complexity
baicells CWE-79
critical
9.6
2022-03-30 CVE-2022-24693 Use of Hard-coded Credentials vulnerability in Baicells Neutrino 430 Firmware and Nova436Q Firmware
Baicells Nova436Q and Neutrino 430 devices with firmware through QRTB 2.7.8 have hardcoded credentials that are easily discovered, and can be used by remote attackers to authenticate via ssh.
network
low complexity
baicells CWE-798
critical
9.8