Unauthenticated Remote Code Execution in Satellite Terminals

Unauthenticated Remote Code Execution in Satellite Terminals

CVE-2013-6035 · HIGH Severity

AV:N/AC:L/AU:N/C:C/I:C/A:C

The firmware on GateHouse; Harris BGAN RF-7800B-VU204 and BGAN RF-7800B-DU204; Hughes Network Systems 9201, 9450, and 9502; Inmarsat; Japan Radio JUE-250 and JUE-500; and Thuraya IP satellite terminals does not require authentication for sessions on TCP port 1827, which allows remote attackers to execute arbitrary code via unspecified protocol operations.

Learn more about our Network Penetration Testing.