9.3
CVSSv2

CVE-2014-0328

Published: 15/08/2014 Updated: 15/08/2014
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

The thraneLINK protocol implementation on Cobham devices does not verify firmware signatures, which allows malicious users to execute arbitrary code by leveraging physical access or terminal access to send an SNMP request and a TFTP response.

Vulnerable Product Search on Vulmon Subscribe to Product

cobham sailor 6006 message terminal -

cobham sailor 6222 vhf -

cobham sailor 6300 mf \\/ hf -

cobham ailor 6110 mini-c gmdss -