VYPR

Nova 430E

by Baicells

CVEs (2)

  • CVE-2023-0776HigFeb 11, 2023
    risk 0.53cvss 8.1epss 0.01

    Baicells Nova 436Q, Nova 430E, Nova 430I, and Neutrino 430 LTE TDD eNodeB devices with firmware through QRTB 2.12.7 are vulnerable to remote shell code exploitation via HTTP command injections. Commands are executed using pre-login execution and executed with root permissions.…

  • CVE-2026-96274HigSep 29, 2026
    risk 0.48cvss 7.4epss 0.00

    In Baicells Nova 430H, an unauthenticated device within radio range can send a malformed uplink message during connection setup that contains an invalid NAS payload. Because the eNodeB does not properly validate this payload, it forwards the message to the core network, which…