CVE-2016-9496: Hughes DW7000 Firmware
Medium severity, CVSS 6.5. EPSS: 0.9% chance of exploitation in the next 30 days.
Hughes high-performance broadband satellite modems, models HN7740S DW7000 HN7000S/SM, lacks authentication. An unauthenticated user may send an HTTP GET request to http://[ip]/com/gatewayreset or http://[ip]/cgi/reboot.bin to cause the modem to reboot.
Affected products
- Hughes DW7000 Firmware: version 6.9.0.34 only
- Hughes HN7000S Firmware: version 6.9.0.34 only
- Hughes HN7000SM Firmware: version 6.9.0.34 only
- Hughes HN7740S Firmware: version 6.9.0.34 only
Published 2018-07-13. Last modified 2026-06-17.