Lucene search

K

Hughes Security Vulnerabilities

cve
cve

CVE-1999-0276

mSQL v2.0.1 and below allows remote execution through a buffer overflow.

7.5AI Score

0.016EPSS

1999-09-29 04:00 AM
35
cve
cve

CVE-1999-0753

The w3-msql CGI script provided with Mini SQL allows remote attackers to view restricted directories.

7.2AI Score

0.036EPSS

2000-01-18 05:00 AM
32
cve
cve

CVE-1999-1260

mSQL (Mini SQL) 2.0.6 allows remote attackers to obtain sensitive server information such as logged users, database names, and server version via the ServerStats query.

6.7AI Score

0.009EPSS

2001-09-12 04:00 AM
28
cve
cve

CVE-2000-0012

Buffer overflow in w3-msql CGI program in miniSQL package allows remote attackers to execute commands.

7.3AI Score

0.025EPSS

2000-04-25 04:00 AM
28
cve
cve

CVE-2001-1225

Hughes Technology Mini SQL 2.0.10 through 2.0.12 allows local users to cause a denial of service by creating a very large array in a table, which causes miniSQL to crash when the table is queried.

7.1AI Score

0.0004EPSS

2002-03-15 05:00 AM
26
cve
cve

CVE-2016-9494

Hughes high-performance broadband satellite modems, models HN7740S DW7000 HN7000S/SM, are potentially vulnerable to improper input validation. The device's advanced status web page that is linked to from the basic status web page does not appear to properly parse malformed GET requests. This may le...

6.5CVSS

7.3AI Score

0.001EPSS

2018-07-13 08:29 PM
23
cve
cve

CVE-2016-9495

Hughes high-performance broadband satellite modems, models HN7740S DW7000 HN7000S/SM, uses hard coded credentials. Access to the device's default telnet port (23) can be obtained through using one of a few default credentials shared among all devices.

8.8CVSS

8.6AI Score

0.001EPSS

2018-07-13 08:29 PM
36
cve
cve

CVE-2016-9496

Hughes high-performance broadband satellite modems, models HN7740S DW7000 HN7000S/SM, lacks authentication. An unauthenticated user may send an HTTP GET request to http://[ip]/com/gatewayreset or http://[ip]/cgi/reboot.bin to cause the modem to reboot.

6.5CVSS

7.5AI Score

0.001EPSS

2018-07-13 08:29 PM
29
cve
cve

CVE-2016-9497

Hughes high-performance broadband satellite modems, models HN7740S DW7000 HN7000S/SM, is vulnerable to an authentication bypass using an alternate path or channel. By default, port 1953 is accessible via telnet and does not require authentication. An unauthenticated remote user can access many admi...

8.8CVSS

9.1AI Score

0.002EPSS

2018-07-13 08:29 PM
32
cve
cve

CVE-2023-22971

Cross Site Scripting (XSS) vulnerability in Hughes Network Systems Router Terminal for HX200 v8.3.1.14, HX90 v6.11.0.5, HX50L v6.10.0.18, HN9460 v8.2.0.48, and HN7000S v6.9.0.37, allows unauthenticated attackers to misuse frames, include JS/HTML code and steal sensitive information from legitimate ...

6.1CVSS

6AI Score

0.001EPSS

2023-01-26 09:18 PM
16