CVE Database
/

CVE-2024-6198

Back to search

CVE-2024-6198

Published: Apr 25, 2025

Modified: Feb 26, 2026

PUBLISHED

Description

The device exposes a web interface on ports TCP/3030 and TCP/9882. This web service runs lighttpd, which implements the “SNORE” interface. This interface is affected by a stack buffer overflow vulnerability due to insecure path parsing. An attacker with access to the LAN network interface could use a specially crafted HTTP request to exploit a buffer overflow on the modem.

VendorProductVersions

ViaSat

RM4100

affected
0 - < 3.8.0.4

Viasat

RM4200

affected
0 - < 3.8.0.4

Viasat

EM4100

affected
0 - < 3.8.0.4

Viasat

RM5110

affected
0 - <= 4.3.0.1

Viasat

RM5111

affected
0 - <= 4.3.0.1

Viasat

RG1000

affected
0 - <= 4.3.0.1

Viasat

RG1100

affected
0 - <= 4.3.0.1

Viasat

EG1000

affected
0 - <= 4.3.0.1

Viasat

EG1020

affected
0 - <= 4.3.0.1

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now