Vulnerability index

Browse CVEs

22 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Airlink Es450 Firmware HIGH 7.1
CVE-2018-4064EPSS 14%

An exploitable unverified password change vulnerability exists in the ACEManager upload.cgi functionality of Sierra Wireless AirLink ES450 FW 4.9.3. …

No fix yet
Fix from $1,950 2019-10-31
Airlink Es450 Firmware HIGH 8.8
CVE-2018-4072EPSS 27%

An exploitable Permission Assignment vulnerability exists in the ACEManager EmbeddedAceSet_Task.cgi functionality of Sierra Wireless AirLink ES450 FW…

No fix yet
Fix from $1,950 2019-05-06
Airlink Es450 Firmware HIGH 8.8
CVE-2018-4073EPSS 26%

An exploitable Permission Assignment vulnerability exists in the ACEManager EmbeddedAceSet_Task.cgi functionality of Sierra Wireless AirLink ES450 FW…

No fix yet
Fix from $1,950 2019-05-06
Airlink Es450 Firmware HIGH 8.8
CVE-2018-4066

An exploitable cross-site request forgery vulnerability exists in the ACEManager functionality of Sierra Wireless AirLink ES450 FW 4.9.3. A specially…

No fix yet
Fix from $1,950 2019-05-06
Airlink Es450 Firmware HIGH 8.8
CVE-2018-4070EPSS 18%

An exploitable Information Disclosure vulnerability exists in the ACEManager EmbeddedAceGet_Task.cgi functionality of Sierra Wireless AirLink ES450 F…

No fix yet
Fix from $1,950 2019-05-06
Airlink Es450 Firmware HIGH 8.8
CVE-2018-4071EPSS 19%

An exploitable Information Disclosure vulnerability exists in the ACEManager EmbeddedAceGet_Task.cgi functionality of Sierra Wireless AirLink ES450 F…

No fix yet
Fix from $1,950 2019-05-06
Airlink Es450 Firmware HIGH 8.1
CVE-2018-4062EPSS 5%

A hard-coded credentials vulnerability exists in the snmpd function of the Sierra Wireless AirLink ES450 FW 4.9.3. Activating snmpd outside of the We…

No fix yet
Fix from $1,950 2019-05-06
Airlink Es450 Firmware MEDIUM 6.5
CVE-2018-4067

An exploitable information disclosure vulnerability exists in the ACEManager template_load.cgi functionality of Sierra Wireless AirLink ES450 FW 4.9.…

No fix yet
Fix from $1,600 2019-05-06
Airlink Es450 Firmware MEDIUM 6.1
CVE-2018-4065

An exploitable cross-site scripting vulnerability exists in the ACEManager ping_result.cgi functionality of Sierra Wireless AirLink ES450 FW 4.9.3. A…

No fix yet
Fix from $1,600 2019-05-06
Airlink Es450 Firmware HIGH 8.8
CVE-2018-4061EPSS 19%

An exploitable command injection vulnerability exists in the ACEManager iplogging.cgi functionality of Sierra Wireless AirLink ES450 FW 4.9.3. A spec…

No fix yet
Fix from $1,950 2019-05-06
Airlink Es450 Firmware HIGH 7.5
CVE-2018-4069

An information disclosure vulnerability exists in the ACEManager authentication functionality of Sierra Wireless AirLink ES450 FW 4.9.3. The ACEManag…

No fix yet
Fix from $1,950 2019-05-06
Airlink Es450 Firmware MEDIUM 5.3
CVE-2018-4068EPSS 11%

An exploitable information disclosure vulnerability exists in the ACEManager functionality of Sierra Wireless AirLink ES450 FW 4.9.3. A HTTP request …

Mitigation only
Fix from $1,600 2019-05-06
Sierra Wireless Em7345 Software HIGH 7.8
CVE-2017-9247

Multiple unquoted service path vulnerabilities in Sierra Wireless Windows Mobile Broadband Driver Package (MBDP) with build ID < 4657 allows local us…

Mitigation only
Fix from $1,950 2017-08-02
Aleos Firmware CRITICAL 9.8
CVE-2016-5065

Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 allow Embedded_Ace_Set_Task.cgi command injection.

No fix yet
Fix from $2,300 2017-04-10
Aleos Firmware CRITICAL 9.8
CVE-2016-5066

Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 have weak passwords for admin, rauser, sconsole, and user.

No fix yet
Fix from $2,300 2017-04-10
Aleos Firmware CRITICAL 9.8
CVE-2016-5068

Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 do not require authentication for Embedded_Ace_Get_Task.cgi requests.

No fix yet
Fix from $2,300 2017-04-10
Aleos Firmware CRITICAL 9.8
CVE-2016-5069

Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 use guessable session tokens, which are in the URL.

No fix yet
Fix from $2,300 2017-04-10
Aleos Firmware CRITICAL 9.8
CVE-2016-5070

Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 store passwords in cleartext.

No fix yet
Fix from $2,300 2017-04-10
Aleos Firmware HIGH 8.8
CVE-2016-5067

Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 allow Hayes AT command injection.

No fix yet
Fix from $1,950 2017-04-10
Aleos Firmware HIGH 8.8
CVE-2016-5071

Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 execute the management web application as root.

No fix yet
Fix from $1,950 2017-04-10
Raven X Ev Do Firmware HIGH 10.0
CVE-2013-2820

The Sierra Wireless AirLink Raven X EV-DO gateway 4221_4.0.11.003 and 4228_4.0.11.003 allows remote attackers to reprogram the firmware via a replay …

Mitigation only
Fix from $1,950 2014-01-15
Raven X Ev Do Firmware HIGH 9.3
CVE-2013-2819

The Sierra Wireless AirLink Raven X EV-DO gateway 4221_4.0.11.003 and 4228_4.0.11.003 allows remote attackers to install Trojan horse firmware by lev…

Mitigation only
Fix from $1,950 2014-01-15