cbcvebase.
CVE-2024-11982
published 2024-11-29

CVE-2024-11982: Certain models of routers from Billion Electric has a Plaintext Storage of a Password vulnerability. Remote attackers with administrator privileges can access…

PriorityP346high7.2CVSS 3.1
AVNACLPRHUINSUCHIHAH
EPSS
0.61%
44.6th percentile
Certain models of routers from Billion Electric has a Plaintext Storage of a Password vulnerability. Remote attackers with administrator privileges can access the user settings page to retrieve plaintext passwords.

Affected

12 ranges
VendorProductVersion rangeFixed in
billion_electricm100>= 1.04.1.* < 1.04.1.6751.04.1.675
billion_electricm100>= 1.04.1.592.* < 1.04.1.592.81.04.1.592.8
billion_electricm100>= 1.04.1.613.* < 1.04.1.613.131.04.1.613.13
billion_electricm120n>= 1.04.1.* < 1.04.1.6751.04.1.675
billion_electricm120n>= 1.04.1.592.* < 1.04.1.592.81.04.1.592.8
billion_electricm120n>= 1.04.1.613.* < 1.04.1.613.131.04.1.613.13
billion_electricm150>= 1.04.1.* < 1.04.1.6751.04.1.675
billion_electricm150>= 1.04.1.592.* < 1.04.1.592.81.04.1.592.8
billion_electricm150>= 1.04.1.613.* < 1.04.1.613.131.04.1.613.13
billion_electricm500>= 1.04.1.* < 1.04.1.6751.04.1.675
billion_electricm500>= 1.04.1.592.* < 1.04.1.592.81.04.1.592.8
billion_electricm500>= 1.04.1.613.* < 1.04.1.613.131.04.1.613.13
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.