Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2963▼ 120 respecto a la semana anterior
Críticas / altas1404▲ 47 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
–

5 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (6.1)0.68%—Hughes Hx200 FirmwareHughes Hx90 FirmwareHughes Hx50l FirmwareHughes Hn9460 Firmware+126/1/202317/6/2026
Cross Site Scripting (XSS) vulnerability in Hughes Network Systems Router Terminal for HX200 v8.3.1.14, HX90 v6.11.0.5, HX50L v6.10.0.18, HN9460 v8.2.0.48, and HN7000S v6.9.0.37, allows unauthenticated attackers to misuse frames, include JS/HTML code and steal sensitive information from legitimate users of the…
ModificadaAlta (8.8)2.2%—Hughes Hn7740s FirmwareHughes Dw7000 FirmwareHughes Hn7000s FirmwareHughes Hn7000sm Firmware13/7/201817/6/2026
Hughes high-performance broadband satellite modems, models HN7740S DW7000 HN7000S/SM, is vulnerable to an authentication bypass using an alternate path or channel. By default, port 1953 is accessible via telnet and does not require authentication. An unauthenticated remote user can access many administrative commands…
ModificadaMedia (6.5)0.90%—Hughes Hn7740s FirmwareHughes Dw7000 FirmwareHughes Hn7000s FirmwareHughes Hn7000sm Firmware13/7/201817/6/2026
Hughes high-performance broadband satellite modems, models HN7740S DW7000 HN7000S/SM, lacks authentication. An unauthenticated user may send an HTTP GET request to http://[ip]/com/gatewayreset or http://[ip]/cgi/reboot.bin to cause the modem to reboot.
ModificadaAlta (8.8)0.89%—Hughes Hn7740s FirmwareHughes Dw7000 FirmwareHughes Hn7000s FirmwareHughes Hn7000sm Firmware13/7/201817/6/2026
Hughes high-performance broadband satellite modems, models HN7740S DW7000 HN7000S/SM, uses hard coded credentials. Access to the device's default telnet port (23) can be obtained through using one of a few default credentials shared among all devices.
ModificadaMedia (6.5)0.75%—Hughes Hn7740s FirmwareHughes Dw7000 FirmwareHughes Hn7000s FirmwareHughes Hn7000sm Firmware13/7/201817/6/2026
Hughes high-performance broadband satellite modems, models HN7740S DW7000 HN7000S/SM, are potentially vulnerable to improper input validation. The device's advanced status web page that is linked to from the basic status web page does not appear to properly parse malformed GET requests. This may lead to a denial of…