sierra wireless
Security Risk Profile
47
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 16 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from February 23, 2015 to present
16
Total CVEs
10
Critical+High
1
Exploited
4
Unpatched
Threat Assessment
Avg CVSS
7.8
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
4
Critical/High
Risk Level
47/100
medium
⚠️ 1 Active Exploits🆕 2Fresh (<7d)📈 2 in Last 30 Days
Severity Distribution
Critical
3High
7Medium
3Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
Infoleak
4
2
OS Command Injection
2
3
CSRF
2
4
Malicious File Upload
1
5
Command Injection
1
Most Affected Products
1. Sierrawireless Aleos12
2. Sierra Wireless LS300, GX400, GX440, and ES4407
3. Sierrawireless Airlink Es450 Firmware6
4. Sierra Wireless Airlink Router (ES450, GX450) running ALEOS software3
5. Sierra Wireless Airlink Router (MP70, RV50, RV50x, RV55, LX 40, LX60) running ALEOS software3
Recent Vulnerabilities
See more →https://www.bleepingcomputer.com/news/security/sierra-21-vulnerabilities-impact-critical-infrastructure-routers/
unknown
"Sierra:21" vulnerabilities impact critical infrastructure routers
12/6/2023🔧 No Patch
CVE-2023-40462
CVSS 7.5high
Improper input leads to DoS
12/4/2023🔧 No Patch
CVE-2022-46650
CVSS 4.9medium
2/10/2023
CVE-2022-46649
CVSS 8.8high
2/10/2023
CVE-2018-4067
CVSS 6.5medium
5/6/2019
CVE-2018-4063
CVSS 8.8high
Sierra Wireless AirLink ALEOS Unrestricted Upload of File with Dangerous Type Vulnerability
5/6/2019⚠ Exploited
CVE-2018-4066
CVSS 8.8high
5/6/2019
CVE-2018-4062
CVSS 9.3critical
5/6/2019
CVE-2018-4061
CVSS 9.1critical
5/6/2019
CVE-2018-4069
CVSS 7.5high
5/6/2019
Monitor sierra wireless in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.