CVE-2019-14919: High severity billion sg600 r2 firmware vulnerability
An exposed Telnet Service on the Billion Smart Energy Router SG600R2 with firmware v3.02.rc6 allows a local network attacker to authenticate via hardcoded credentials into a shell, gaining root execution privileges over the device.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability CVE-2019-14919?
CVE-2019-14919 is an exposed Telnet Service vulnerability on the Billion Smart Energy Router SG600R2 with firmware v3.02.rc6, allowing a local network attacker to gain root execution privileges.
How severe is the vulnerability CVE-2019-14919?
The severity of CVE-2019-14919 is rated as high with a CVSS score of 7.8.
How can a local network attacker exploit CVE-2019-14919?
A local network attacker can exploit CVE-2019-14919 by using the exposed Telnet service with hardcoded credentials to gain root execution privileges on the device.
Which devices are affected by CVE-2019-14919?
The Billion Smart Energy Router SG600R2 with firmware v3.02.rc6 is affected by CVE-2019-14919.
Is the Billion Smart Energy Router SG600R2 vulnerable to CVE-2019-14919?
Yes, the Billion Smart Energy Router SG600R2 with firmware v3.02.rc6 is vulnerable to CVE-2019-14919.