billion records
10 published records for vendor billion.
Researcher profile
- Entered KEV
- 1 · 10%
- Weaponized
- 5 · 50%
- Pre-auth RCE
- 3
- With a fix record
- 0%
- Median publish → KEV
- 1558 days
Recurring classes
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')4
- CWE-798 Use of Hard-coded Credentials4
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
The weakness classes this vendor ships most often: where to look.
CWEAll records
10 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
97Now | CVE-2017-18368Weaponized | The ZyXEL P660HN-T1A v1 TCLinux Fw $7.3.15.0 v001 / 3.40(ULM.0)b31 router distributed by TrueOnline has a command injection vulnerability inzyxel · p660hn-t1a v2 firmware · CWE-78 | Critical9.8 | KEV | 94.4% | May 2, 2019 |
59Plan | CVE-2017-18369Weaponized | The Billion 5200W-T 1.02b.rc5.dt49 router distributed by TrueOnline has a command injection vulnerability in the Remote System Log forwardinbillion · 5200w-t firmware · CWE-78 | Critical9.8 | — | 67.6% | May 2, 2019 |
46Plan | CVE-2017-18371Weaponized | The ZyXEL P660HN-T1A v2 TCLinux Fw #7.3.37.6 router distributed by TrueOnline has three user accounts with default passwords, including two zyxel · p660hn-t1a v2 firmware · CWE-798 | Critical9.8 | — | 22.5% | May 2, 2019 |
42Plan | CVE-2017-18370Weaponized | The ZyXEL P660HN-T1A v2 TCLinux Fw #7.3.37.6 router distributed by TrueOnline has a command injection vulnerability in the Remote System Logzyxel · p660hn-t1a v2 firmware · CWE-78 | High8.8 | — | 24.4% | May 2, 2019 |
42Plan | CVE-2017-18372Weaponized | The Billion 5200W-T TCLinux Fw $7.3.8.0 v008 130603 router distributed by TrueOnline has a command injection vulnerability in the Time Settibillion · 5200w-t firmware · CWE-78 | High8.8 | — | 21.9% | May 2, 2019 |
37Monitor | CVE-2017-18374No exploit | The ZyXEL P660HN-T1A v1 TCLinux Fw $7.3.15.0 v001 / 3.40(ULM.0)b31 router distributed by TrueOnline has two user accounts with default passwzyxel · p660hn-t1a v2 firmware · CWE-798 | High8.8 | — | 5.5% | May 2, 2019 |
37Monitor | CVE-2017-18373No exploit | The Billion 5200W-T TCLinux Fw $7.3.8.0 v008 130603 router distributed by TrueOnline has three user accounts with default passwords, includibillion · 5200w-t firmware · CWE-798 | High8.8 | — | 5.4% | May 2, 2019 |
36Monitor | CVE-2019-14920No exploit | Billion Smart Energy Router SG600R2 Firmware v3.02.rc6 allows an authenticated attacker to gain root execution privileges over the device vibillion · sg600 r2 firmware | High8.8 | — | 2.2% | Jan 9, 2020 |
31Monitor | CVE-2019-14919No exploit | An exposed Telnet Service on the Billion Smart Energy Router SG600R2 with firmware v3.02.rc6 allows a local network attacker to authenticatebillion · sg600 r2 firmware · CWE-798 | High7.8 | — | 1.5% | Jan 9, 2020 |
21Monitor | CVE-2019-14918No exploit | XSS in the DHCP lease-status table in Billion Smart Energy Router SG600R2 Firmware v3.02.rc6 allows an attacker to inject arbitrary HTML/Javbillion · sg600 r2 firmware · CWE-79 | Medium5.4 | — | 0.8% | Jan 9, 2020 |
- CVE-2017-1836897Now
The ZyXEL P660HN-T1A v1 TCLinux Fw $7.3.15.0 v001 / 3.40(ULM.0)b31 router distributed by TrueOnline has a command injection vulnerability in
CriticalCVSS 9.8KEVWeaponizedEPSS 94%zyxel · p660hn-t1a v2 firmwareMay 2, 2019
- CVE-2017-1836959Plan
The Billion 5200W-T 1.02b.rc5.dt49 router distributed by TrueOnline has a command injection vulnerability in the Remote System Log forwardin
CriticalCVSS 9.8WeaponizedEPSS 68%billion · 5200w-t firmwareMay 2, 2019
- CVE-2017-1837146Plan
The ZyXEL P660HN-T1A v2 TCLinux Fw #7.3.37.6 router distributed by TrueOnline has three user accounts with default passwords, including two
CriticalCVSS 9.8WeaponizedEPSS 23%zyxel · p660hn-t1a v2 firmwareMay 2, 2019
- CVE-2017-1837042Plan
The ZyXEL P660HN-T1A v2 TCLinux Fw #7.3.37.6 router distributed by TrueOnline has a command injection vulnerability in the Remote System Log
HighCVSS 8.8WeaponizedEPSS 24%zyxel · p660hn-t1a v2 firmwareMay 2, 2019
- CVE-2017-1837242Plan
The Billion 5200W-T TCLinux Fw $7.3.8.0 v008 130603 router distributed by TrueOnline has a command injection vulnerability in the Time Setti
HighCVSS 8.8WeaponizedEPSS 22%billion · 5200w-t firmwareMay 2, 2019
- CVE-2017-1837437Monitor
The ZyXEL P660HN-T1A v1 TCLinux Fw $7.3.15.0 v001 / 3.40(ULM.0)b31 router distributed by TrueOnline has two user accounts with default passw
HighCVSS 8.8No exploitEPSS 6%zyxel · p660hn-t1a v2 firmwareMay 2, 2019
- CVE-2017-1837337Monitor
The Billion 5200W-T TCLinux Fw $7.3.8.0 v008 130603 router distributed by TrueOnline has three user accounts with default passwords, includi
HighCVSS 8.8No exploitEPSS 5%billion · 5200w-t firmwareMay 2, 2019
- CVE-2019-1492036Monitor
Billion Smart Energy Router SG600R2 Firmware v3.02.rc6 allows an authenticated attacker to gain root execution privileges over the device vi
HighCVSS 8.8No exploitEPSS 2%billion · sg600 r2 firmwareJan 9, 2020
- CVE-2019-1491931Monitor
An exposed Telnet Service on the Billion Smart Energy Router SG600R2 with firmware v3.02.rc6 allows a local network attacker to authenticate
HighCVSS 7.8No exploitEPSS 2%billion · sg600 r2 firmwareJan 9, 2020
- CVE-2019-1491821Monitor
XSS in the DHCP lease-status table in Billion Smart Energy Router SG600R2 Firmware v3.02.rc6 allows an attacker to inject arbitrary HTML/Jav
MediumCVSS 5.4No exploitEPSS 1%billion · sg600 r2 firmwareJan 9, 2020