CVE-2023-49253: Hongdian h8951-4g-Esp Firmware

Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.

Root user password is hardcoded into the device and cannot be changed in the user interface.

Affected products

  • Hongdian h8951-4g-Esp Firmware: before 2310271149 (fixed in 2310271149)

Published 2024-01-12. Last modified 2026-06-17.