Certain models of routers from Billion Electric has an Authentication Bypass vulnerability, allowing unautheticated attackers to retrive contents of arbitrary web pages.
History

Fri, 29 Nov 2024 15:15:00 +0000

Type Values Removed Values Added
First Time appeared Billion Electric
Billion Electric m100
Billion Electric m120n
Billion Electric m150
Billion Electric m500
CPEs cpe:2.3:a:billion_electric:m100:*:*:*:*:*:*:*:*
cpe:2.3:a:billion_electric:m120n:*:*:*:*:*:*:*:*
cpe:2.3:a:billion_electric:m150:*:*:*:*:*:*:*:*
cpe:2.3:a:billion_electric:m500:*:*:*:*:*:*:*:*
Vendors & Products Billion Electric
Billion Electric m100
Billion Electric m120n
Billion Electric m150
Billion Electric m500
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 29 Nov 2024 06:45:00 +0000

Type Values Removed Values Added
Description Certain models of in-vehicle routers from Billion Electric has an Authentication Bypass vulnerability, allowing unautheticated attackers to retrive contents of arbitrary web pages. Certain models of routers from Billion Electric has an Authentication Bypass vulnerability, allowing unautheticated attackers to retrive contents of arbitrary web pages.
Title Billion Electric in-vehicle router - Authentication Bypass Billion Electric router - Authentication Bypass

Fri, 29 Nov 2024 06:30:00 +0000

Type Values Removed Values Added
Description Certain models of in-vehicle routers from Billion Electric has an Authentication Bypass vulnerability, allowing unautheticated attackers to retrive contents of arbitrary web pages.
Title Billion Electric in-vehicle router - Authentication Bypass
Weaknesses CWE-288
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: twcert

Published: 2024-11-29T06:21:31.476Z

Updated: 2024-11-29T14:31:52.528Z

Reserved: 2024-11-29T01:52:19.267Z

Link: CVE-2024-11981

cve-icon Vulnrichment

Updated: 2024-11-29T14:31:41.458Z

cve-icon NVD

Status : Received

Published: 2024-11-29T07:15:05.760

Modified: 2024-11-29T07:15:05.760

Link: CVE-2024-11981

cve-icon Redhat

No data.