CVE-2016-9495: Hughes DW7000 Firmware

High severity, CVSS 8.8. EPSS: 0.9% chance of exploitation in the next 30 days.

Hughes high-performance broadband satellite modems, models HN7740S DW7000 HN7000S/SM, uses hard coded credentials. Access to the device's default telnet port (23) can be obtained through using one of a few default credentials shared among all devices.

Affected products

  • Hughes DW7000 Firmware: version 6.9.0.34 only
  • Hughes HN7000S Firmware: version 6.9.0.34 only
  • Hughes HN7000SM Firmware: version 6.9.0.34 only
  • Hughes HN7740S Firmware: version 6.9.0.34 only

Published 2018-07-13. Last modified 2026-06-17.