Vulnerabilities > Baicells > Nova436Q Firmware

DATE CVE VULNERABILITY TITLE RISK
2023-02-11 CVE-2023-0776 Command Injection vulnerability in Baicells products
Baicells Nova 436Q, Nova 430E, Nova 430I, and Neutrino 430 LTE TDD eNodeB devices with firmware through QRTB 2.12.7 are vulnerable to remote shell code exploitation via HTTP command injections.
network
low complexity
baicells CWE-77
critical
10.0
2022-03-30 CVE-2022-24693 Use of Hard-coded Credentials vulnerability in Baicells Neutrino 430 Firmware and Nova436Q Firmware
Baicells Nova436Q and Neutrino 430 devices with firmware through QRTB 2.7.8 have hardcoded credentials that are easily discovered, and can be used by remote attackers to authenticate via ssh.
network
low complexity
baicells CWE-798
7.8