Skip to content
Noroxi

Cobham records

27 published records for vendor cobham.

All records

27 records
  • Cobham Sailor 900 and 6000 satellite terminals with firmware 1.08 MFHF and 2.11 VHF have hardcoded credentials for the administrator account

    CriticalCVSS 10.0No exploitEPSS 2%

    cobham · sailor 900 firmwareAug 15, 2014

  • Cobham Sea Tel 121 build 222701 devices allow remote attackers to bypass authentication via a direct request to MenuDealerGx.html, MenuDeale

    CriticalCVSS 9.8No exploitEPSS 3%

    cobham · sea tel 121 firmwareJan 7, 2018

  • The web application portal of the Cobham EXPLORER 710, firmware version 1.07, allows unauthenticated access to a port that can run AT commands

    CriticalCVSS 9.8No exploitEPSS 3%

    cobham · explorer 710 firmwareOct 10, 2019

  • CVE-2019-9533
    39Monitor

    The root password of the Cobham EXPLORER 710 is the same for all versions of firmware up to and including v1.08

    CriticalCVSS 9.8No exploitEPSS 2%

    cobham · explorer 710 firmwareOct 10, 2019

  • Cobham Satcom Sailor 250 and 500 devices before 1.25 contained an unauthenticated password reset vulnerability.

    CriticalCVSS 9.8No exploitEPSS 1%

    cobham · satcom sailor 250 firmwareMar 15, 2019

  • CVE-2014-0328
    38Monitor

    The thraneLINK protocol implementation on Cobham devices does not verify firmware signatures, which allows attackers to execute arbitrary co

    CriticalCVSS 9.3No exploitEPSS 3%

    cobham · ailor 6110 mini-c gmdssAug 15, 2014

  • CVE-2013-7180
    32Monitor

    Cobham SAILOR 900 VSAT; SAILOR FleetBroadBand 150, 250, and 500; EXPLORER BGAN; and AVIATOR 200, 300, 350, and 700D devices do not properly

    HighCVSS 7.8No exploitEPSS 2%

    cobham · aviator 200Aug 15, 2014

  • An issue in Cobham SAILOR VSAT Ku v.164B019, allows a remote attacker to execute arbitrary code via a crafted script to the sub_21D24 functi

    HighCVSS 8.1No exploitEPSS 1%

    cobham · sailor 600 vsat ku firmwareApr 12, 2024

  • Cross Site Scripting (XSS) vulnerability in Cobham SAILOR VSAT Ku v.164B019, allows a remote attacker to execute arbitrary code via a crafte

    HighCVSS 8.2No exploitEPSS 1%

    cobham · sailor 600 vsat ku firmwareApr 12, 2024

  • CVE-2018-5266
    31Monitor

    Cobham Sea Tel 121 build 222701 devices allow remote attackers to obtain potentially sensitive information about valid usernames by reading

    HighCVSS 7.5No exploitEPSS 2%

    cobham · sea tel 121 firmwareJan 7, 2018

  • CVE-2019-9534
    31Monitor

    The Cobham EXPLORER 710, firmware version 1.07, does not validate its firmware image

    HighCVSS 7.8No exploitEPSS 0%

    cobham · explorer 710 firmwareOct 10, 2019

  • CVE-2019-9532
    31Monitor

    The web application portal of the Cobham EXPLORER 710, firmware version 1.07, sends the login password in cleartext

    HighCVSS 7.8No exploitEPSS 0%

    cobham · explorer 710 firmwareOct 10, 2019

  • Cobham Satcom Sailor 800 and 900 devices contained a vulnerability that allowed for arbitrary writing of content to the system's configurati

    HighCVSS 7.5No exploitEPSS 2%

    cobham · satcom sailor 800 firmwareMar 15, 2019

  • CVE-2014-2941
    29Monitor

    Cobham Sailor 6000 satellite terminals have hardcoded Tbus 2 credentials, which allows remote attackers to obtain access via a TBUS2 command

    HighCVSS 7.1No exploitEPSS 2%

    cobham · ailor 6110 mini-c gmdssAug 15, 2014

  • CVE-2014-2942
    28Monitor

    Cobham Aviator 700D and 700E satellite terminals use an improper algorithm for PIN codes, which makes it easier for attackers to obtain a pr

    HighCVSS 7.2No exploitEPSS 0%

    cobham · aviator 700dSep 22, 2014

  • CVE-2014-2964
    27Monitor

    Cobham Aviator 700D and 700E satellite terminals have hardcoded passwords for the (1) debug, (2) prod, (3) do160, and (4) flrp programs, whi

    MediumCVSS 6.9No exploitEPSS 0%

    cobham · aviator 700dAug 15, 2014

  • Cross Site Scripting (XSS) vulnerability in Cobham SAILOR VSAT Ku v.164B019 allows a remote attacker to execute arbitrary code via a crafted

    MediumCVSS 6.5No exploitEPSS 1%

    cobham · sailor 600 vsat ku firmwareApr 12, 2024

  • Cobham Satcom Sailor 250 and 500 devices before 1.25 contained persistent XSS, which could be exploited by an unauthenticated threat actor v

    MediumCVSS 6.1No exploitEPSS 1%

    cobham · satcom sailor 250 firmwareMar 15, 2019

  • Cross Site Scripting (XSS) vulnerability in Cobham SAILOR VSAT Ku v.164B019, allows a remote attacker to execute arbitrary code via a crafte

    MediumCVSS 6.1No exploitEPSS 1%

    cobham · sailor 600 vsat ku firmwareApr 12, 2024

  • Cross Site Scripting (XSS) vulnerability in Cobham SAILOR VSAT Ku v.164B019, allows a remote attacker to execute arbitrary code via a crafte

    MediumCVSS 6.1No exploitEPSS 1%

    cobham · sailor 600 vsat ku firmwareApr 12, 2024

  • CVE-2019-9530
    22Monitor

    The web root directory of the Cobham EXPLORER 710, firmware version 1.07, has no access restrictions on downloading and reading all files

    MediumCVSS 5.5No exploitEPSS 0%

    cobham · explorer 710 firmwareOct 10, 2019

  • CVE-2019-9529
    22Monitor

    The web application portal of the Cobham EXPLORER 710, firmware version 1.07, has no authentication by default

    MediumCVSS 5.5No exploitEPSS 0%

    cobham · explorer 710 firmwareOct 10, 2019

  • CVE-2018-5728
    21Monitor

    Cobham Sea Tel 121 build 222701 devices allow remote attackers to obtain potentially sensitive information via a /cgi-bin/getSysStatus reque

    MediumCVSS 5.3No exploitEPSS 1%

    cobham · seatel 121 firmwareJan 16, 2018

  • Cobham Sea Tel v170 224521 through v194 225444 devices allow attackers to obtain potentially sensitive information, such as a vessel's latit

    MediumCVSS 5.3No exploitEPSS 1%

    cobham · sea tel coastal 18 firmwareSep 15, 2019

  • CVE-2018-5071
    21Monitor

    Persistent XSS exists in the web server on Cobham Sea Tel 116 build 222429 satellite communication system devices: remote attackers can inje

    MediumCVSS 5.4No exploitEPSS 1%

    cobham · sea tel 116 firmwareJan 7, 2018