Unauthorized Access to Device via Hard-coded Credentials
CVE-2023-6198
9.3CRITICAL
What is CVE-2023-6198?
The Baicells Snap Router, specifically the BaiCE_BMI model on the EP3011, contains a vulnerability due to the existence of hard-coded credentials in its User Passwords modules. This design flaw allows unauthorized users to gain access to the device, posing significant risks to network security. Organizations utilizing this router should be aware of the potential for exploitation and take necessary precautions to safeguard their infrastructure, including updating to configurations that mitigate this vulnerability.
Affected Version(s)
Snap Router EP3011 1.3.5.6
