PT-2014-3020 · Hughes Network Systems+5 · Hughes Network Systems 9450+9

Ruben Santamarta

·

Published

2014-02-04

·

Updated

2014-02-04

·

CVE-2013-6035

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions GateHouse firmware (affected versions not specified) Harris BGAN RF-7800B-VU204 firmware (affected versions not specified) Harris BGAN RF-7800B-DU204 firmware (affected versions not specified) Hughes Network Systems 9201 firmware (affected versions not specified) Hughes Network Systems 9450 firmware (affected versions not specified) Hughes Network Systems 9502 firmware (affected versions not specified) Inmarsat firmware (affected versions not specified) Japan Radio JUE-250 firmware (affected versions not specified) Japan Radio JUE-500 firmware (affected versions not specified) Thuraya IP satellite terminals firmware (affected versions not specified)
Description The issue allows remote attackers to execute arbitrary code via unspecified protocol operations on TCP port 1827, due to the lack of authentication for sessions.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2013-6035

Affected Products

Gatehouse
Harris Bgan Rf-7800B-Du204
Harris Bgan Rf-7800B-Vu204
Hughes Network Systems 9201
Hughes Network Systems 9450
Hughes Network Systems 9502
Inmarsat
Japan Radio Jue-250
Japan Radio Jue-500
Thuraya Ip