Baicells
First CVE: Jan 26, 2023Active for: 3 years
5
CVEs Published
More CVEs Published than 15% of tracked CNAs
2.5
Avg CVEs / Year
More Avg CVEs / Year than 16% of tracked CNAs
9.7
Avg CVSS Score
Higher Avg CVSS Score than 100% of tracked CNAs
0.0%
In CISA KEV
Bottom 1%
Self-Reporting Analysis
Of all the CVEs published by Baicells as a CNA, 80.0% affect products that Baicells develops as a vendor.
80.0%
20.0%
Self-reported: 4Third-party: 1
Of all the CVEs published that affect products developed by Baicells, 80.0% are self-published by Baicells as a CNA.
80.0%
20.0%
Self-published: 4Published by other CNAs: 1
Trends Over Time
The number and severity of CVEs published by Baicells over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jan 26, 2023
3 years ago
Most Recent CVE
Jun 25, 2024
759 days ago
Top CVEs
All CVEs published by Baicells as a CNA, regardless of affected vendor or product.
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-24022CRITICAL Baicells Nova 227, Nova 233, and Nova 243 LTE TDD eNodeB devices with firmware through RTS/RTD 3.7.11.3 have hardcoded credentials that are easily discovered and can be used by rem | Jan 26, 2023 | 9.8 | 32 | NO | NO |
CVE-2023-24508CRITICAL Baicells Nova 227, Nova 233, and Nova 243 LTE TDD eNodeB and Nova 246 devices with firmware through RTS/RTD 3.6.6 are vulnerable to remote shell code exploitation via HTTP command | Jan 26, 2023 | 9.6 | 30 | NO | NO |
CVE-2023-1097CRITICAL Baicells EG7035-M11 devices with firmware through BCE-ODU-1.0.8 are vulnerable to improper code exploitation via HTTP GET command injections. Commands are executed using pre-login | Mar 1, 2023 | 9.8 | 29 | NO | NO |
CVE-2023-0776CRITICAL Baicells Nova 436Q, Nova 430E, Nova 430I, and Neutrino 430 LTE TDD eNodeB devices with firmware through QRTB 2.12.7 are vulnerable to remote shell code exploitation via HTTP comman | Feb 11, 2023 | 10.0 | 29 | NO | NO |
CVE-2023-6198CRITICAL Use of Hard-coded Credentials vulnerability in Baicells Snap Router BaiCE_BMI on EP3011 (User Passwords modules) allows unauthorized access to the device. | Jun 25, 2024 | 9.3 | 27 | NO | NO |
CVE Severity & Scoring
Severity distribution of CVEs published by this CNA5 CVEs
100%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
Critical
Attack Vector
Local0 (0.0%)
Network5 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low5 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None4 (80.0%)
Unknown0 (0.0%)
Required1 (20.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None5 (100.0%)
Unknown0 (0.0%)
Exploit Exposure
Signals from CVEs in this cna scope (5 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
An overview of all social media posts that mention a CVE ID published by Baicells as a CNA.
Media Mentions
Media articles that mention a CVE ID published by Baicells as a CNA — matched by CVE ID, not by organization name.