Baicells Nova 227, Nova 233, and Nova 243 LTE TDD eNodeB and Nova 246 devices with firmware through RTS/RTD 3.6.6 are vulnerable to remote shell code exploitation via HTTP command injections. Commands are executed using pre-login execution and executed with root permissions. The following methods below have been tested and validated by a 3rd party analyst and has been confirmed exploitable special thanks to Rustam Amin for providing the steps to reproduce. 


Fixes

Solution

Baicells recommends that all customers currently running an earlier version of RTS/RTD upgrade their products to the 3.7.11.6 firmware.


Workaround

No workaround given by the vendor.

History

Thu, 27 Mar 2025 21:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Baicells

Published:

Updated: 2025-03-27T20:20:04.220Z

Reserved: 2023-01-24T19:44:01.622Z

Link: CVE-2023-24508

cve-icon Vulnrichment

Updated: 2024-08-02T10:56:04.184Z

cve-icon NVD

Status : Modified

Published: 2023-01-26T21:18:19.737

Modified: 2024-11-21T07:48:00.863

Link: CVE-2023-24508

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.