Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Hughes

First CVE: Jan 1, 1999Active for: 28 yearsTotal CVEs: 10
42.5
VTI Score
High

Hughes' vulnerability profile centers on a focused portfolio of satellite and wireless networking equipment, including the HN7000S and DW7000 product lines and their firmware implementations. The recurring exposures involve authentication and input-handling weaknesses—including authentication bypass, improper authentication, cross-site scripting, and input-validation flaws—that are characteristic of remote-access and management interfaces in network appliances. Vulnerabilities affecting this vendor have a tendency to acquire public exploit code, making patched versions a priority where these devices are deployed or internet-reachable; live severity, exploitation activity, and exposure counts are shown alongside this summary.

FAUCET AI Generated
10
Total CVEs
More Total CVEs than 92% of tracked vendors
0.1
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 1% of tracked vendors
7.1
Avg CVSS Score
Higher Avg CVSS Score than 52% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Hughes over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jan 1, 1999
27 years ago
Most Recent CVE
Jan 26, 2023
1,275 days ago

Products(17 total)

Top CVEs

Signals from CVEs in this vendor scope (10 CVEs).

10 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2000-0012HIGH
Buffer overflow in w3-msql CGI program in miniSQL package allows remote attackers to execute commands.
Dec 27, 199910.046NOYES
CVE-1999-0753HIGH
The w3-msql CGI script provided with Mini SQL allows remote attackers to view restricted directories.
Aug 17, 19997.530NOYES
CVE-2016-9497HIGH
Hughes high-performance broadband satellite modems, models HN7740S DW7000 HN7000S/SM, is vulnerable to an authentication bypass using an alternate path or channel. By default, port
Jul 13, 20188.827NONO
CVE-2023-22971MEDIUM
Cross Site Scripting (XSS) vulnerability in Hughes Network Systems Router Terminal for HX200 v8.3.1.14, HX90 v6.11.0.5, HX50L v6.10.0.18, HN9460 v8.2.0.48, and HN7000S v6.9.0.37, a
Jan 26, 20236.122NONO
CVE-2016-9495HIGH
Hughes high-performance broadband satellite modems, models HN7740S DW7000 HN7000S/SM, uses hard coded credentials. Access to the device's default telnet port (23) can be obtained t
Jul 13, 20188.822NONO
CVE-1999-0276HIGH
mSQL v2.0.1 and below allows remote execution through a buffer overflow.
Jan 1, 19997.520NONO
CVE-1999-1260HIGH
mSQL (Mini SQL) 2.0.6 allows remote attackers to obtain sensitive server information such as logged users, database names, and server version via the ServerStats query.
Feb 15, 19997.519NONO
CVE-2016-9496MEDIUM
Hughes high-performance broadband satellite modems, models HN7740S DW7000 HN7000S/SM, lacks authentication. An unauthenticated user may send an HTTP GET request to http://[ip]/com/
Jul 13, 20186.517NONO
CVE-2016-9494MEDIUM
Hughes high-performance broadband satellite modems, models HN7740S DW7000 HN7000S/SM, are potentially vulnerable to improper input validation. The device's advanced status web page
Jul 13, 20186.517NONO
CVE-2001-1225LOW
Hughes Technology Mini SQL 2.0.10 through 2.0.12 allows local users to cause a denial of service by creating a very large array in a table, which causes miniSQL to crash when the t
Dec 26, 20012.114NONO
View all 10 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products10 CVEs
10%
30%
60%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
LowMediumHigh
Attack Vector
Local0 (0.0%)
Network1 (10.0%)
Unknown5 (50.0%)
Physical0 (0.0%)
Adjacent Network4 (40.0%)
Attack Complexity
Low5 (50.0%)
High0 (0.0%)
Unknown5 (50.0%)
User Interaction
None4 (40.0%)
Unknown5 (50.0%)
Required1 (10.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None5 (50.0%)
Unknown5 (50.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (10 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
2 CVEs
20.0% of CVEs· 77th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Hughes.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Hughes — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Hughes's Products

View all 2 CNAs →

Top CWEs