Vulnerability index

Browse CVEs

50 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Airlink Es450 Firmware HIGH 8.8
CVE-2018-4071EPSS 19%

An exploitable Information Disclosure vulnerability exists in the ACEManager EmbeddedAceGet_Task.cgi functionality of Sierra Wireless AirLink ES450 F…

No fix yet
Fix from $1,950 2019-05-06
Airlink Es450 Firmware HIGH 8.1
CVE-2018-4062EPSS 5%

A hard-coded credentials vulnerability exists in the snmpd function of the Sierra Wireless AirLink ES450 FW 4.9.3. Activating snmpd outside of the We…

No fix yet
Fix from $1,950 2019-05-06
Airlink Es450 Firmware MEDIUM 6.5
CVE-2018-4067

An exploitable information disclosure vulnerability exists in the ACEManager template_load.cgi functionality of Sierra Wireless AirLink ES450 FW 4.9.…

No fix yet
Fix from $1,600 2019-05-06
Airlink Es450 Firmware MEDIUM 6.1
CVE-2018-4065

An exploitable cross-site scripting vulnerability exists in the ACEManager ping_result.cgi functionality of Sierra Wireless AirLink ES450 FW 4.9.3. A…

No fix yet
Fix from $1,600 2019-05-06
Airlink Es450 Firmware HIGH 8.8
CVE-2018-4061EPSS 19%

An exploitable command injection vulnerability exists in the ACEManager iplogging.cgi functionality of Sierra Wireless AirLink ES450 FW 4.9.3. A spec…

No fix yet
Fix from $1,950 2019-05-06
Airlink Es450 Firmware HIGH 7.5
CVE-2018-4069

An information disclosure vulnerability exists in the ACEManager authentication functionality of Sierra Wireless AirLink ES450 FW 4.9.3. The ACEManag…

No fix yet
Fix from $1,950 2019-05-06
Airlink Es450 Firmware MEDIUM 5.3
CVE-2018-4068EPSS 11%

An exploitable information disclosure vulnerability exists in the ACEManager functionality of Sierra Wireless AirLink ES450 FW 4.9.3. A HTTP request …

Mitigation only
Fix from $1,600 2019-05-06
Aleos CRITICAL 9.8
CVE-2018-10251

A vulnerability in Sierra Wireless AirLink GX400, GX440, ES440, and LS300 routers with firmware before 4.4.7 and GX450, ES450, RV50, RV50X, MP70, and…

Fix: 4.4.7 / 4.9.3+
Fix from $2,300 2018-05-04
Gx440 Firmware HIGH 8.8
CVE-2017-15043

A vulnerability in Sierra Wireless AirLink GX400, GX440, ES440, and LS300 routers with firmware before 4.4.5 and GX450, ES450, RV50, RV50X, MP70, and…

Fix: 4.4.5 / 4.9+
Fix from $1,950 2018-05-04
Sierra Wireless Em7345 Software HIGH 7.8
CVE-2017-9247

Multiple unquoted service path vulnerabilities in Sierra Wireless Windows Mobile Broadband Driver Package (MBDP) with build ID < 4657 allows local us…

Mitigation only
Fix from $1,950 2017-08-02
Aleos Firmware CRITICAL 9.8
CVE-2016-5065

Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 allow Embedded_Ace_Set_Task.cgi command injection.

No fix yet
Fix from $2,300 2017-04-10
Aleos Firmware CRITICAL 9.8
CVE-2016-5066

Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 have weak passwords for admin, rauser, sconsole, and user.

No fix yet
Fix from $2,300 2017-04-10
Aleos Firmware CRITICAL 9.8
CVE-2016-5068

Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 do not require authentication for Embedded_Ace_Get_Task.cgi requests.

No fix yet
Fix from $2,300 2017-04-10
Aleos Firmware CRITICAL 9.8
CVE-2016-5069

Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 use guessable session tokens, which are in the URL.

No fix yet
Fix from $2,300 2017-04-10
Aleos Firmware CRITICAL 9.8
CVE-2016-5070

Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 store passwords in cleartext.

No fix yet
Fix from $2,300 2017-04-10
Aleos Firmware HIGH 8.8
CVE-2016-5067

Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 allow Hayes AT command injection.

No fix yet
Fix from $1,950 2017-04-10
Aleos Firmware HIGH 8.8
CVE-2016-5071

Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 execute the management web application as root.

No fix yet
Fix from $1,950 2017-04-10
Aleos HIGH 10.0
CVE-2015-2897

Sierra Wireless ALEOS before 4.4.2 on AirLink ES, GX, and LS devices has hardcoded root accounts, which makes it easier for remote attackers to obtai…

Fix: after 4.4.1
Fix from $1,950 2015-08-08
Raven X Ev Do Firmware HIGH 10.0
CVE-2013-2820

The Sierra Wireless AirLink Raven X EV-DO gateway 4221_4.0.11.003 and 4228_4.0.11.003 allows remote attackers to reprogram the firmware via a replay …

Mitigation only
Fix from $1,950 2014-01-15
Raven X Ev Do Firmware HIGH 9.3
CVE-2013-2819

The Sierra Wireless AirLink Raven X EV-DO gateway 4221_4.0.11.003 and 4228_4.0.11.003 allows remote attackers to install Trojan horse firmware by lev…

Mitigation only
Fix from $1,950 2014-01-15