Seiko Solutions SkyBridge BASIC MB-A130 OS Command Injection Vulnerability

Vulnerability

A vulnerability allowing OS command injection has been identified in Seiko Solutions SkyBridge BASIC MB-A130 versions through 1.5.8. This vulnerability allows remote, unauthenticated attackers to execute arbitrary OS commands with root privileges.

Impact

Exploitation of this vulnerability could lead to unauthorized execution of OS commands with root privileges, potentially allowing an attacker to manipulate the system or its data.

Remediation

Users are advised to update the firmware to SkyBridge BASIC MB-A130 version 1.6.0 or later. For those unable to update, it is recommended to disable Web-UI access from WAN and LAN, and to use closed networks not connected to the internet.

Added: Sep 1, 2025, 6:21 AM
Updated: Sep 1, 2025, 6:21 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
4.7
remediation
7.9
relevance
0.4
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.