CVE-2018-19393
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Cobham Satcom Sailor 800 and 900 devices contained a vulnerability that allowed for arbitrary writing of content to the system's configuration file. This was exploitable via multiple attack vectors depending on the device's configuration. Further analysis also indicated this vulnerability could be leveraged to achieve a Denial of Service (DoS) condition, where the device would require a factory reset to return to normal operation.
Los dispositivos Cobham Satcom Sailor 800 y 900 contenían una vulnerabilidad que permitía la escritura arbitraria de contenido en el archivo de configuración del sistema. Esto fue explotable mediante múltiples vectores de ataque, dependiendo de la configuración del dispositivo. Los análisis posteriores también indicaban que esta vulnerabilidad podría aprovecharse para lograr una condición de denegación de servicio (DoS); el dispositivo requeriría un restablecimiento de fábrica para volver a la operativa normal.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2018-11-20 CVE Reserved
- 2019-03-15 CVE Published
- 2024-08-05 CVE Updated
- 2024-08-05 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-732: Incorrect Permission Assignment for Critical Resource
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
https://cyberskr.com/blog/cobham-satcom-800-900.html | Third Party Advisory | |
https://gist.github.com/CyberSKR/1ade6d887039465d635e27fcbcc817a3 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Cobham Search vendor "Cobham" | Satcom Sailor 800 Firmware Search vendor "Cobham" for product "Satcom Sailor 800 Firmware" | - | - |
Affected
| in | Cobham Search vendor "Cobham" | Satcom Sailor 800 Search vendor "Cobham" for product "Satcom Sailor 800" | - | - |
Safe
|
Cobham Search vendor "Cobham" | Satcom Sailor 900 Firmware Search vendor "Cobham" for product "Satcom Sailor 900 Firmware" | - | - |
Affected
| in | Cobham Search vendor "Cobham" | Satcom Sailor 900 Search vendor "Cobham" for product "Satcom Sailor 900" | - | - |
Safe
|