Vulnerabilities > Cobham > Aviator 700D

DATE CVE VULNERABILITY TITLE RISK
2014-09-22 CVE-2014-2942 Credentials Management vulnerability in Cobham Aviator 700D and Aviator 700E
Cobham Aviator 700D and 700E satellite terminals use an improper algorithm for PIN codes, which makes it easier for attackers to obtain a privileged terminal session by calculating the superuser code, and then leveraging physical access or terminal access to enter this code.
local
low complexity
cobham CWE-255
7.2
2014-08-15 CVE-2014-2964 Unspecified vulnerability in Cobham Aviator 700D and Aviator 700E
Cobham Aviator 700D and 700E satellite terminals have hardcoded passwords for the (1) debug, (2) prod, (3) do160, and (4) flrp programs, which allows physically proximate attackers to gain privileges by sending a password over a serial line.
local
cobham
6.9
2014-08-15 CVE-2013-7180 Information Disclosure vulnerability in Multiple Cobham Products
Cobham SAILOR 900 VSAT; SAILOR FleetBroadBand 150, 250, and 500; EXPLORER BGAN; and AVIATOR 200, 300, 350, and 700D devices do not properly restrict password recovery, which allows attackers to obtain administrative privileges by leveraging physical access or terminal access to spoof a reset code.
network
low complexity
cobham
7.8