Inmarsat develops satellite communication platforms and connectivity services, with vulnerabilities observed in its core products such as AMOS Connect and related infrastructure. The recurring weakness classes center on authentication and credential management issues alongside SQL injection, reflecting common challenges in web-facing and API-driven satellite-communication systems. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Inmarsat over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-3222CRITICAL Hard-coded credentials in AmosConnect 8 allow remote attackers to gain full administrative privileges, including the ability to execute commands on the Microsoft Windows host platf | Jul 22, 2017 | 9.8 | 33 | NO | NO |
CVE-2013-6034HIGH The firmware on GateHouse; Harris BGAN RF-7800B-VU204 and BGAN RF-7800B-DU204; Hughes Network Systems 9201, 9450, and 9502; Inmarsat; Japan Radio JUE-250 and JUE-500; and Thuraya I | Feb 4, 2014 | 10.0 | 29 | NO | NO |
CVE-2013-6035HIGH The firmware on GateHouse; Harris BGAN RF-7800B-VU204 and BGAN RF-7800B-DU204; Hughes Network Systems 9201, 9450, and 9502; Inmarsat; Japan Radio JUE-250 and JUE-500; and Thuraya I | Feb 4, 2014 | 10.0 | 26 | NO | NO |
CVE-2017-3221CRITICAL Blind SQL injection in Inmarsat AmosConnect 8 login form allows remote attackers to access user credentials, including user names and passwords. | Jul 22, 2017 | 9.8 | 25 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Inmarsat.
Media articles that mention a CVE ID that affects a product developed by Inmarsat — matched by CVE ID, not by vendor name.