Логотип exploitDog
bind:CVE-2023-24508
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-24508

Количество 3

Количество 3

nvd логотип

CVE-2023-24508

около 3 лет назад

Baicells Nova 227, Nova 233, and Nova 243 LTE TDD eNodeB and Nova 246 devices with firmware through RTS/RTD 3.6.6 are vulnerable to remote shell code exploitation via HTTP command injections. Commands are executed using pre-login execution and executed with root permissions. The following methods below have been tested and validated by a 3rd party analyst and has been confirmed exploitable special thanks to Rustam Amin for providing the steps to reproduce. 

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-ggfg-pcqp-37x5

около 3 лет назад

Baicells Nova 227, Nova 233, and Nova 243 LTE TDD eNodeB devices with firmware through RTS/RTD 3.6.6 are vulnerable to remote shell code exploitation via HTTP command injections. Commands are executed using pre-login execution and executed with root permissions. The following methods below have been tested and validated by a 3rd party analyst and has been confirmed exploitable special thanks to Rustam Amin for providing the steps to reproduce.

CVSS3: 9.6
EPSS: Низкий
fstec логотип

BDU:2023-08989

около 3 лет назад

Уязвимость микропрограммного обеспечения систем управления сетями LTE Baicells RTS & RTD, позволяющая нарушителю выполнить произвольный код с root-привилегиями

CVSS3: 9.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-24508

Baicells Nova 227, Nova 233, and Nova 243 LTE TDD eNodeB and Nova 246 devices with firmware through RTS/RTD 3.6.6 are vulnerable to remote shell code exploitation via HTTP command injections. Commands are executed using pre-login execution and executed with root permissions. The following methods below have been tested and validated by a 3rd party analyst and has been confirmed exploitable special thanks to Rustam Amin for providing the steps to reproduce. 

CVSS3: 8.1
0%
Низкий
около 3 лет назад
github логотип
GHSA-ggfg-pcqp-37x5

Baicells Nova 227, Nova 233, and Nova 243 LTE TDD eNodeB devices with firmware through RTS/RTD 3.6.6 are vulnerable to remote shell code exploitation via HTTP command injections. Commands are executed using pre-login execution and executed with root permissions. The following methods below have been tested and validated by a 3rd party analyst and has been confirmed exploitable special thanks to Rustam Amin for providing the steps to reproduce.

CVSS3: 9.6
0%
Низкий
около 3 лет назад
fstec логотип
BDU:2023-08989

Уязвимость микропрограммного обеспечения систем управления сетями LTE Baicells RTS & RTD, позволяющая нарушителю выполнить произвольный код с root-привилегиями

CVSS3: 9.6
0%
Низкий
около 3 лет назад

Уязвимостей на страницу