Hughes Network Systems WL3000 Missing Encryption of Sensitive Data
Vulnerability Description
Credentials to access device configuration were transmitted using an unencrypted protocol. These credentials would allow read-only access to network configuration information and terminal configuration data.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-42495
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- An anonymous researcher reported these vulnerabilities to CISA.
More from Hughes Network Systems
View All →Affected Vendor
Hughes Network Systems
View all reports →