CVE-2024-6199: Viasat EG1000

High severity, CVSS 7.7. EPSS: 0.2% chance of exploitation in the next 30 days.

An unauthenticated attacker on the WAN interface, with the ability to intercept Dynamic DNS (DDNS) traffic between DDNS services and the modem, could manipulate specific responses to include code that forces a buffer overflow on the modem. Customers that have not enabled Dynamic DNS on their modem are not vulnerable.

Affected products

  • Viasat EG1000: up to and including 4.3.0.2
  • Viasat EG1020: up to and including 4.3.0.2
  • Viasat RG1100: up to and including 4.3.0.2
  • Viasat RM5110: up to and including 4.3.0.2
  • Viasat RM5111: up to and including 4.3.0.2

Published 2025-04-25. Last modified 2026-06-17.