CVE-2016-9497
8.8
Vector
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD
Description
Hughes high-performance broadband satellite modems, models HN7740S DW7000 HN7000S/SM, is vulnerable to an authentication bypass using an alternate path or channel. By default, port 1953 is accessible via telnet and does not require authentication. An unauthenticated remote user can access many administrative commands via this interface, including rebooting the modem.
Affected (4)
Products: Hughes: Hn7740s Firmware, Dw7000 Firmware, Hn7000s Firmware, Hn7000sm Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 6.9.0.34 |
| Running on/with | Platform Versions |
|---|---|
Hughes Hn7740s | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 6.9.0.34 |
| Running on/with | Platform Versions |
|---|---|
Hughes Dw7000 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Version 6.9.0.34 |
| Running on/with | Platform Versions |
|---|---|
Hughes Hn7000s | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Version 6.9.0.34 |
| Running on/with | Platform Versions |
|---|---|
Hughes Hn7000sm | All versions |
Related CWEs
CWE-287
Improper Authentication
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.
CWE-288
Authentication Bypass Using an Alternate Path or Channel
A product requires authentication, but the product has an alternate path or channel that does not require authentication.
References (4)
Source: cret@cert.org
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Timeline
No history available yet.