CVE-2022-24693
9.8
CRITICAL · CVSS 3.1 · EPSS 3.3% (pctl 88)
In your normal cycle
Critical by CVSS (9.8), but no sign of active exploitation.
Description
Baicells Nova436Q and Neutrino 430 devices with firmware through QRTB 2.7.8 have hardcoded credentials that are easily discovered, and can be used by remote attackers to authenticate via ssh. (The credentials are stored in the firmware, encrypted by the crypt function.)
Scoring
| CVSS | 9.8 (CRITICAL, v3.1) |
|---|---|
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 3.34% — more likely to be exploited than 88% of all CVEs |
| Weakness | CWE-798 |
| On CISA KEV | no |
| Public exploit | none known |
| Published | 2022-03-30 |
| Last modified | 2026-06-17 |
Affected (4)
| Vendor | Product |
|---|---|
| baicells | neutrino 430 |
| baicells | neutrino 430 firmware |
| baicells | nova436q |
| baicells | nova436q firmware |
References
- https://github.com/lukejenkins/CVE-2022-24693
- https://img.baicells.com/Upload/20210909/FILE/98d2752f-6e83-49b1-9dab-d291e9023db6.pdf
- https://na.baicells.com/Service/Firmware
- https://github.com/lukejenkins/CVE-2022-24693
- https://img.baicells.com/Upload/20210909/FILE/98d2752f-6e83-49b1-9dab-d291e9023db6.pdf
- https://na.baicells.com/Service/Firmware
→ the Explorer · watch your stack · NVD