Baicells NEUTRINO430, NOVA436Q, NOVA430e/430i, NOVA846, NOVA246, NOVA243, NOVA233, NOVA227 Multiple Command Injection Vulnerability

Vulnerability

A command injection vulnerability has been identified in Baicells products, specifically in the NEUTRINO430, NOVA436Q, NOVA430e/430i, NOVA846, NOVA246, NOVA243, NOVA233, and NOVA227 models. This vulnerability affects several different versions and stems from improper validation of user input, allowing for the execution of arbitrary commands on the server.

Impact

Exploitation of this vulnerability allows for command injection, where an attacker can execute arbitrary commands on the affected device or server.

Added: Sep 9, 2025, 7:33 PM
Updated: Sep 9, 2025, 7:33 PM

Vulnerability Rating

Custom Algorithm
spread
4.5
impact
10.0
exploitability
7.0
remediation
0.0
relevance
0.5
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.