CVE-2023-24022
Baicells Nova 227, Nova 233, and Nova 243 LTE TDD eNodeB devices with firmware through RTS/RTD 3.7.11.3 have hardcoded credentials that are easily discovered and can be used by remote attackers to authenticate via ssh. (The credentials are stored in the firmware, encrypted by the crypt function.)
Published:Jan 24, 2023
Last Modified:Apr 2, 2025
EPS:Jan 24, 2023
EPSS Score:0.00721
CVSS Score:10
Affected Products
Vendor
Product
Action
Vendor
Baicells
Product
Nova227
Baicells
Nova227
Vendor
Baicells
Product
Nova233
Baicells
Nova233
Vendor
Baicells
Product
Nova243
Baicells
Nova243
Vendor
Baicells
Product
Rtd Firmware
Baicells
Rtd Firmware
Vendor
Baicells
Product
Rts Firmware
Baicells
Rts Firmware
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
References
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
