Vulnerability Description
Use of default credentials for the telnet server in BASETech GE-131 BT-1837836 firmware 20180921 allows remote attackers to execute arbitrary system commands as the root user.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Basetech | Ge-131 Bt-1837836 Firmware | 20180921 |
| Basetech | Ge-131 Bt-1837836 | - |
Related Weaknesses (CWE)
References
- https://infosec.rm-it.de/2020/11/04/basetech-ip-camera-analysis/#vulnsExploitThird Party Advisory
- https://infosec.rm-it.de/2020/11/04/basetech-ip-camera-analysis/#vulnsExploitThird Party Advisory
FAQ
What is CVE-2020-27555?
CVE-2020-27555 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Use of default credentials for the telnet server in BASETech GE-131 BT-1837836 firmware 20180921 allows remote attackers to execute arbitrary system commands as the root user.
How severe is CVE-2020-27555?
CVE-2020-27555 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2020-27555?
Check the references section above for vendor advisories and patch information. Affected products include: Basetech Ge-131 Bt-1837836 Firmware, Basetech Ge-131 Bt-1837836.