Vulnerability index

Browse CVEs

22 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.1 CVE-2018-4064EPSS 14% An exploitable unverified password change vulnerability exists in the ACEManager upload.cgi functionality of Sierra Wireless AirLink ES450 FW 4.9.3. … Airlink Es450 Firmware No fix yet Fix from $1,9502019-10-31 HIGH 8.8 CVE-2018-4072EPSS 27% An exploitable Permission Assignment vulnerability exists in the ACEManager EmbeddedAceSet_Task.cgi functionality of Sierra Wireless AirLink ES450 FW… Airlink Es450 Firmware No fix yet Fix from $1,9502019-05-06 HIGH 8.8 CVE-2018-4073EPSS 26% An exploitable Permission Assignment vulnerability exists in the ACEManager EmbeddedAceSet_Task.cgi functionality of Sierra Wireless AirLink ES450 FW… Airlink Es450 Firmware No fix yet Fix from $1,9502019-05-06 HIGH 8.8 CVE-2018-4066 An exploitable cross-site request forgery vulnerability exists in the ACEManager functionality of Sierra Wireless AirLink ES450 FW 4.9.3. A specially… Airlink Es450 Firmware No fix yet Fix from $1,9502019-05-06 HIGH 8.8 CVE-2018-4070EPSS 18% An exploitable Information Disclosure vulnerability exists in the ACEManager EmbeddedAceGet_Task.cgi functionality of Sierra Wireless AirLink ES450 F… Airlink Es450 Firmware No fix yet Fix from $1,9502019-05-06 HIGH 8.8 CVE-2018-4071EPSS 19% An exploitable Information Disclosure vulnerability exists in the ACEManager EmbeddedAceGet_Task.cgi functionality of Sierra Wireless AirLink ES450 F… Airlink Es450 Firmware No fix yet Fix from $1,9502019-05-06 HIGH 8.1 CVE-2018-4062EPSS 5% A hard-coded credentials vulnerability exists in the snmpd function of the Sierra Wireless AirLink ES450 FW 4.9.3. Activating snmpd outside of the We… Airlink Es450 Firmware No fix yet Fix from $1,9502019-05-06 MEDIUM 6.5 CVE-2018-4067 An exploitable information disclosure vulnerability exists in the ACEManager template_load.cgi functionality of Sierra Wireless AirLink ES450 FW 4.9.… Airlink Es450 Firmware No fix yet Fix from $1,6002019-05-06 MEDIUM 6.1 CVE-2018-4065 An exploitable cross-site scripting vulnerability exists in the ACEManager ping_result.cgi functionality of Sierra Wireless AirLink ES450 FW 4.9.3. A… Airlink Es450 Firmware No fix yet Fix from $1,6002019-05-06 HIGH 8.8 CVE-2018-4061EPSS 19% An exploitable command injection vulnerability exists in the ACEManager iplogging.cgi functionality of Sierra Wireless AirLink ES450 FW 4.9.3. A spec… Airlink Es450 Firmware No fix yet Fix from $1,9502019-05-06 HIGH 7.5 CVE-2018-4069 An information disclosure vulnerability exists in the ACEManager authentication functionality of Sierra Wireless AirLink ES450 FW 4.9.3. The ACEManag… Airlink Es450 Firmware No fix yet Fix from $1,9502019-05-06 MEDIUM 5.3 CVE-2018-4068EPSS 11% An exploitable information disclosure vulnerability exists in the ACEManager functionality of Sierra Wireless AirLink ES450 FW 4.9.3. A HTTP request … Airlink Es450 Firmware Mitigation only Fix from $1,6002019-05-06 HIGH 7.8 CVE-2017-9247 Multiple unquoted service path vulnerabilities in Sierra Wireless Windows Mobile Broadband Driver Package (MBDP) with build ID < 4657 allows local us… Sierra Wireless Em7345 Software Mitigation only Fix from $1,9502017-08-02 CRITICAL 9.8 CVE-2016-5065 Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 allow Embedded_Ace_Set_Task.cgi command injection. Aleos Firmware No fix yet Fix from $2,3002017-04-10 CRITICAL 9.8 CVE-2016-5066 Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 have weak passwords for admin, rauser, sconsole, and user. Aleos Firmware No fix yet Fix from $2,3002017-04-10 CRITICAL 9.8 CVE-2016-5068 Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 do not require authentication for Embedded_Ace_Get_Task.cgi requests. Aleos Firmware No fix yet Fix from $2,3002017-04-10 CRITICAL 9.8 CVE-2016-5069 Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 use guessable session tokens, which are in the URL. Aleos Firmware No fix yet Fix from $2,3002017-04-10 CRITICAL 9.8 CVE-2016-5070 Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 store passwords in cleartext. Aleos Firmware No fix yet Fix from $2,3002017-04-10 HIGH 8.8 CVE-2016-5067 Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 allow Hayes AT command injection. Aleos Firmware No fix yet Fix from $1,9502017-04-10 HIGH 8.8 CVE-2016-5071 Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 execute the management web application as root. Aleos Firmware No fix yet Fix from $1,9502017-04-10 HIGH 10.0 CVE-2013-2820 The Sierra Wireless AirLink Raven X EV-DO gateway 4221_4.0.11.003 and 4228_4.0.11.003 allows remote attackers to reprogram the firmware via a replay … Raven X Ev Do Firmware Mitigation only Fix from $1,9502014-01-15 HIGH 9.3 CVE-2013-2819 The Sierra Wireless AirLink Raven X EV-DO gateway 4221_4.0.11.003 and 4228_4.0.11.003 allows remote attackers to install Trojan horse firmware by lev… Raven X Ev Do Firmware Mitigation only Fix from $1,9502014-01-15