"value":"Credentials to access device configuration were transmitted using an unencrypted protocol. These credentials would allow read-only access to network configuration information and terminal configuration data."
}
]
},
"problemtype":{
"problemtype_data":[
{
"description":[
{
"lang":"eng",
"value":"CWE-311 Missing Encryption of Sensitive Data",
"value":"<span style=\"background-color: rgb(255, 255, 255);\">Hughes Network Systems has patched the vulnerabilities, which requires no action by the user. Any questions or concerns should be directed to </span><a target=\"_blank\" rel=\"nofollow\" href=\"https://www.hughes.com/who-we-are/contact-us\">Hughes Network Systems customer support</a><span style=\"background-color: rgb(255, 255, 255);\">.</span>\n\n<br>"
}
],
"value":"Hughes Network Systems has patched the vulnerabilities, which requires no action by the user. Any questions or concerns should be directed to Hughes Network Systems customer support https://www.hughes.com/who-we-are/contact-us ."
}
],
"credits":[
{
"lang":"en",
"value":"An anonymous researcher reported these vulnerabilities to CISA."