Intellian C700 Web Panel Firewall Rule Management Vulnerability

Vulnerability

A vulnerability exists in the Intellian C700 web panel's firewall rule management. When a new rule is added, the ID used for the database entry may not match the JSON ID. This discrepancy can lead to issues when attempting to delete the rule, as the system relies on the JSON ID, causing the deletion to fail. As a result, rules created in this manner cannot be removed unless the device is reset to factory defaults. This vulnerability affects the Iridium Certus 700 version 1.0.1.

Impact

Exploitation of this vulnerability allows for the creation of firewall rules that cannot be deleted, potentially leading to misconfigured firewall settings and unauthorized access or denial of service.

Remediation

Intellian Technologies has released a patch for this vulnerability in the Q2 2025 update.

Added: Sep 1, 2025, 7:22 PM
Updated: Sep 1, 2025, 7:22 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
5.2
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.