Post

Baicells Nova 430H Vulnerability Advisory

Baicells Nova 430H Vulnerability Advisory

Baicells Nova 430H Vulnerability Advisory

Date Published: September 29, 2026
Source: CISA

A critical vulnerability has been identified in the Baicells Nova 430H eNodeB (model pBS3101SH) that could allow attackers to inject malformed messages, potentially leading to a denial-of-service condition. This vulnerability, known as CVE-2026-96274, affects versions <= BaiBLQ_3.0.12 and impacts critical infrastructure sectors, including Communications and Information Technology, with devices deployed worldwide. 🚨

Key Details:

  • Vulnerability: CVE-2026-96274
  • Affected Device: Baicells Nova 430H eNodeB
  • Impact: Denial-of-service condition
  • Reported By: Qiqing Huang to CISA

Description:

In the Baicells Nova 430H, an unauthenticated device within radio range can send a malformed uplink message during connection setup that contains an invalid NAS payload. The eNodeB fails to validate this payload properly, forwarding the message to the core network, which can lead to a shutdown of the signaling association for the cell. This results in temporary service disruption until connectivity is re-established.

Recommendations:

CISA recommends that users take defensive measures to minimize the risk of exploitation:

  • Minimize network exposure for all control system devices.
  • Ensure devices are not accessible from the internet.
  • Use firewalls to isolate control system networks from business networks.
  • When remote access is necessary, utilize secure methods such as Virtual Private Networks (VPNs).

Organizations should perform proper impact analysis and risk assessment prior to deploying defensive measures. If you observe suspected malicious activity, follow established internal procedures and report findings to CISA for tracking and correlation against other incidents.

For more information, please contact Baicells customer support.

Read full article

This post is licensed under CC BY 4.0 by the author.