HIGH · 10.0

CVE-2014-2940

Cobham Sailor 900 and 6000 satellite terminals with firmware 1.08 MFHF and 2.11 VHF have hardcoded credentials for the administrator account, which allows attackers to obtain administrative control by...

Vulnerability Description

Cobham Sailor 900 and 6000 satellite terminals with firmware 1.08 MFHF and 2.11 VHF have hardcoded credentials for the administrator account, which allows attackers to obtain administrative control by leveraging physical access or terminal access.

CVSS Score

10.0

HIGH

AV:N/AC:L/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
CobhamSailor 900 Firmware1.08_mfhf
CobhamSailor 900 Vsat-
CobhamSailor 6000 Series Firmware1.08_mfhf
CobhamAilor 6110 Mini-C Gmdss-
CobhamSailor 6006 Message Terminal-
CobhamSailor 6222 Vhf-
CobhamSailor 6300 Mf \/ Hf-

References

FAQ

What is CVE-2014-2940?

CVE-2014-2940 is a vulnerability with a CVSS score of 10.0 (HIGH). Cobham Sailor 900 and 6000 satellite terminals with firmware 1.08 MFHF and 2.11 VHF have hardcoded credentials for the administrator account, which allows attackers to obtain administrative control by...

How severe is CVE-2014-2940?

CVE-2014-2940 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2014-2940?

Check the references section above for vendor advisories and patch information. Affected products include: Cobham Sailor 900 Firmware, Cobham Sailor 900 Vsat, Cobham Sailor 6000 Series Firmware, Cobham Ailor 6110 Mini-C Gmdss, Cobham Sailor 6006 Message Terminal.