Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown

CVE-2025-1143

Disclosure Date: February 11, 2025 (last updated February 11, 2025)
Certain models of routers from Billion Electric has hard-coded embedded linux credentials, allowing attackers to log in through the SSH service using these credentials and obtain root privilege of the system.
0
Attacker Value
Unknown

CVE-2024-11983

Disclosure Date: November 29, 2024 (last updated December 21, 2024)
Certain models of routers from Billion Electric has an OS Command Injection vulnerability, allowing remote attackers with administrator privileges to inject arbitrary system commands into a specific SSH function and execute them on the device.
0
Attacker Value
Unknown

CVE-2024-11982

Disclosure Date: November 29, 2024 (last updated December 21, 2024)
Certain models of routers from Billion Electric has a Plaintext Storage of a Password vulnerability. Remote attackers with administrator privileges can access the user settings page to retrieve plaintext passwords.
0
Attacker Value
Unknown

CVE-2024-11981

Disclosure Date: November 29, 2024 (last updated December 21, 2024)
Certain models of routers from Billion Electric has an Authentication Bypass vulnerability, allowing unautheticated attackers to retrive contents of arbitrary web pages.
0
Attacker Value
Unknown

CVE-2024-11980

Disclosure Date: November 29, 2024 (last updated December 21, 2024)
Certain modes of routers from Billion Electric have a Missing Authentication vulnerability, allowing unauthenticated remote attackers to directly access the specific functionality to obtain partial device information, modify the WiFi SSID, and restart the device.
0