CVE-2017-14244: Iball Ib-WRA150N Firmware

Critical severity, CVSS 9.8. EPSS: 17.1% chance of exploitation in the next 30 days.

An authentication bypass vulnerability on iBall Baton ADSL2+ Home Router FW_iB-LR7011A_1.0.2 devices potentially allows attackers to directly access administrative router settings by crafting URLs with a .cgi extension, as demonstrated by /info.cgi and /password.cgi.

Affected products

  • Iball Ib-WRA150N Firmware: version fw_ib-lr7011a_1.0.2 only

Published 2017-09-17. Last modified 2026-06-17.