CVE-2024-11983
EUVD-2024-3404029.11.2024, 08:15
Certain models of routers from Billion Electric has an OS Command Injection vulnerability, allowing remote attackers with administrator privileges to inject arbitrary system commands into a specific SSH function and execute them on the device.
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| billion_electric | m100 | 1.04.1.592.* ≤ 𝑥 < 1.04.1.592.8 | ADP |
| billion_electric | m100 | 1.04.1.613.* ≤ 𝑥 < 1.04.1.613.13 | ADP |
| billion_electric | m100 | 1.04.1.* ≤ 𝑥 < 1.04.1.675 | ADP |
| billion_electric | m150 | 1.04.1.592.* ≤ 𝑥 < 1.04.1.592.8 | ADP |
| billion_electric | m150 | 1.04.1.613.* ≤ 𝑥 < 1.04.1.613.13 | ADP |
| billion_electric | m150 | 1.04.1.* < ≤ 𝑥 < 1.04.1.675 | ADP |
| billion_electric | m120n | 1.04.1.592.* ≤ 𝑥 < 1.04.1.592.8 | ADP |
| billion_electric | m120n | 1.04.1.613.* ≤ 𝑥 < 1.04.1.613.13 | ADP |
| billion_electric | m120n | 1.04.1.* < ≤ 𝑥 < 1.04.1.675 | ADP |
| billion_electric | m500 | 1.04.1.592.* ≤ 𝑥 < 1.04.1.592.8 | ADP |
| billion_electric | m500 | 1.04.1.613.* ≤ 𝑥 < 1.04.1.613.13 | ADP |
| billion_electric | m500 | 1.04.1.* < ≤ 𝑥 < 1.04.1.675 | ADP |