First published: Sat Aug 08 2015(Updated: )
Sierra Wireless ALEOS before 4.4.2 on AirLink ES, GX, and LS devices has hardcoded root accounts, which makes it easier for remote attackers to obtain administrative access via a (1) SSH or (2) TELNET session.
Credit: cret@cert.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sierrawireless Aleos | <=4.4.1 | |
Sierrawireless Airlink Es440 | ||
Sierrawireless Airlink Es450 | ||
Sierrawireless Airlink Gx440 | ||
Sierrawireless Airlink Gx450 | ||
Sierrawireless Airlink Ls300 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.