Billion manufactures a narrow line of networking and routing appliances, primarily the 5200W-T series and SG600 R2, that occupy a modest but strategically important niche in small-business and branch-office deployments. Vulnerabilities affecting this vendor skew strongly toward critical severity and frequently acquire public exploit code; the exposure recurs across these product lines through embedded-system weakness classes including OS command injection, hard-coded credentials, and cross-site scripting that reflect the security-sensitive nature of administrative interfaces in network appliances. Defenders should treat firmware updates for these devices as high-priority and restrict management access; live exploitation and severity counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Billion over time
Signals from CVEs in this vendor scope (10 CVEs).
10 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-18368CRITICAL The ZyXEL P660HN-T1A v1 TCLinux Fw $7.3.15.0 v001 / 3.40(ULM.0)b31 router distributed by TrueOnline has a command injection vulnerability in the Remote System Log forwarding functi | May 2, 2019 | 9.8 | 97 | YES | YES |
CVE-2017-18369CRITICAL The Billion 5200W-T 1.02b.rc5.dt49 router distributed by TrueOnline has a command injection vulnerability in the Remote System Log forwarding function, which is accessible by an un | May 2, 2019 | 9.8 | 78 | NO | YES |
CVE-2017-18371CRITICAL The ZyXEL P660HN-T1A v2 TCLinux Fw #7.3.37.6 router distributed by TrueOnline has three user accounts with default passwords, including two hardcoded service accounts: one with the | May 2, 2019 | 9.8 | 54 | NO | YES |
CVE-2017-18370HIGH The ZyXEL P660HN-T1A v2 TCLinux Fw #7.3.37.6 router distributed by TrueOnline has a command injection vulnerability in the Remote System Log forwarding function, which is only acce | May 2, 2019 | 8.8 | 52 | NO | YES |
CVE-2017-18372HIGH The Billion 5200W-T TCLinux Fw $7.3.8.0 v008 130603 router distributed by TrueOnline has a command injection vulnerability in the Time Setting function, which is only accessible by | May 2, 2019 | 8.8 | 51 | NO | YES |
CVE-2017-18374HIGH The ZyXEL P660HN-T1A v1 TCLinux Fw $7.3.15.0 v001 / 3.40(ULM.0)b31 router distributed by TrueOnline has two user accounts with default passwords, including a hardcoded service acco | May 2, 2019 | 8.8 | 30 | NO | NO |
CVE-2017-18373HIGH The Billion 5200W-T TCLinux Fw $7.3.8.0 v008 130603 router distributed by TrueOnline has three user accounts with default passwords, including two hardcoded service accounts: one w | May 2, 2019 | 8.8 | 30 | NO | NO |
CVE-2019-14920HIGH Billion Smart Energy Router SG600R2 Firmware v3.02.rc6 allows an authenticated attacker to gain root execution privileges over the device via a hidden etc_ro/web/adm/system_command | Jan 9, 2020 | 8.8 | 26 | NO | NO |
CVE-2019-14919HIGH An exposed Telnet Service on the Billion Smart Energy Router SG600R2 with firmware v3.02.rc6 allows a local network attacker to authenticate via hardcoded credentials into a shell, | Jan 9, 2020 | 7.8 | 24 | NO | NO |
CVE-2019-14918MEDIUM XSS in the DHCP lease-status table in Billion Smart Energy Router SG600R2 Firmware v3.02.rc6 allows an attacker to inject arbitrary HTML/JavaScript code to achieve client-side code | Jan 9, 2020 | 5.4 | 19 | NO | NO |
Signals from CVEs in this vendor scope (10 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Billion.
Media articles that mention a CVE ID that affects a product developed by Billion — matched by CVE ID, not by vendor name.