PT-2026-23121 · Idc · Sfx2100 Satellite Receiver

Abdul Mhanni

·

Published

2026-03-05

·

Updated

2026-03-11

·

CVE-2026-29125

CVSS v4.0

7.1

High

VectorAV:L/AC:H/AT:N/PR:L/UI:N/VC:L/VI:L/VA:H/SC:L/SI:L/SA:H
Name of the Vulnerable Software and Affected Versions IDC SFX2100 Satellite Receiver (affected versions not specified)
Description The device sets the /etc/resolv.conf file to be world-writable, allowing any local user to modify DNS configuration. This can lead to DNS resolver tampering, potentially redirecting network communications, enabling man-in-the-middle attacks, and causing denial of service. The /etc/resolv.conf file is used to configure the DNS resolver, which translates domain names into IP addresses. When this file is world-writable, unauthorized users can alter the DNS settings, redirecting network traffic to malicious servers.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Incorrect Permission

Weakness Enumeration

Related Identifiers

CVE-2026-29125

Affected Products

Sfx2100 Satellite Receiver