VYPR

Sailor 600 Vsat Ku Firmware

by Cobham

CVEs (7)

  • CVE-2023-44857HigApr 12, 2024
    risk 0.53cvss 8.1epss 0.01

    An issue in Cobham SAILOR VSAT Ku v.164B019, allows a remote attacker to execute arbitrary code via a crafted script to the sub_21D24 function in the acu_web component.

  • CVE-2023-44852HigApr 12, 2024
    risk 0.53cvss 8.2epss 0.01

    Cross Site Scripting (XSS) vulnerability in Cobham SAILOR VSAT Ku v.164B019, allows a remote attacker to execute arbitrary code via a crafted script to the c_set_traps_decode function in the acu_web file.

  • CVE-2023-44855MedApr 12, 2024
    risk 0.42cvss 6.5epss 0.01

    Cross Site Scripting (XSS) vulnerability in Cobham SAILOR VSAT Ku v.164B019 allows a remote attacker to execute arbitrary code via a crafted script to the rdiag, sender, and recipients parameters of the sub_219C4 function in the acu_web file.

  • CVE-2023-44856MedApr 12, 2024
    risk 0.40cvss 6.1epss 0.01

    Cross Site Scripting (XSS) vulnerability in Cobham SAILOR VSAT Ku v.164B019, allows a remote attacker to execute arbitrary code via a crafted script to the rstat, sender, and recipients' parameters of the sub_21D24 function in the acu_web file.

  • CVE-2023-44854MedApr 12, 2024
    risk 0.40cvss 6.1epss 0.01

    Cross Site Scripting (XSS) vulnerability in Cobham SAILOR VSAT Ku v.164B019, allows a remote attacker to execute arbitrary code via a crafted script to the c_set_rslog_decode function in the acu_web file.

  • CVE-2019-16320MedSep 15, 2019
    risk 0.35cvss 5.3epss 0.01

    Cobham Sea Tel v170 224521 through v194 225444 devices allow attackers to obtain potentially sensitive information, such as a vessel's latitude and longitude, via the public SNMP community.

  • CVE-2023-44853MedApr 12, 2024
    risk 0.31cvss 4.8epss 0.00

    \An issue was discovered in Cobham SAILOR VSAT Ku v.164B019, allows a remote attacker to execute arbitrary code via a crafted script to the sub_219C4 function in the acu_web file.