An out-of-bounds reads vulnerability exists in the ACEView Service of ALEOS before 4.13.0, 4.9.5, and 4.4.9. Sensitive information may be disclosed via the ACEviewservice, accessible by default on the LAN.
References
Link | Resource |
---|---|
https://source.sierrawireless.com/resources/security-bulletins/sierra-wireless-technical-bulletin---swi-psa-2020-004/ | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Information
Published : 2020-08-21 12:15
Updated : 2022-02-09 11:27
NVD link : CVE-2019-11852
Mitre link : CVE-2019-11852
JSON object : View
CWE
CWE-125
Out-of-bounds Read
Products Affected
sierrawireless
- aleos
- airlink_lx60
- airlink_es450
- airlink_rv50x
- airlink_rv50
- airlink_es440
- airlink_gx440
- airlink_mp70e
- airlink_mp70
- airlink_gx450
- airlink_gx400
- airlink_lx40
- airlink_ls300