www.brinztech.com
Critical Command Injection Vulnerability in Cobham SATCOM Routers
Article Content
A critical command-injection vulnerability, tracked as CVE-2026-83772, has been disclosed in Cobham SATCOM VSAT7090 satellite communication routers, affecting maritime fleets globally. This flaw allows unauthenticated remote attackers to execute arbitrary commands on the router's operating system due to improper input handling in the JSON Parsing component. The vulnerability poses severe risks, including traffic interception, total communication blackouts, and potential access to onboard networks. Weaponized exploit code is already circulating, increasing the urgency for mitigation. Maritime operators are advised to isolate management interfaces and apply vendor firmware updates immediately. A patch is available for affected systems, specifically versions up to 20260704. The CVSS score assigned to this vulnerability is 9.9, indicating its critical nature. The situation is evolving, and organizations must act swiftly to protect their infrastructure.
Key Points: • CVE-2026-83772 allows remote command execution on Cobham SATCOM VSAT7090 routers. • Exploit code is publicly available, increasing the risk of attacks on maritime operations. • Immediate isolation of management interfaces and firmware updates are recommended.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.