CVE-2016-5067: Command Injection
Published Apr 10, 2017
·Updated
Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 allow Hayes AT command injection.
Affected Software
2 affected components
Sierrawireless Aleos Firmware=4.3.2
Sierrawireless Gx 440
Event History
Apr 10, 2017
CVE Published
via MITRE·03:00 AM
Data Sourced
via MITRE·03:00 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2016-5067?
CVE-2016-5067 is classified as a high-severity vulnerability due to the potential for unauthorized command execution.
2
How do I fix CVE-2016-5067?
To fix CVE-2016-5067, upgrade the ALEOS firmware to a version higher than 4.3.2.
3
Which devices are affected by CVE-2016-5067?
CVE-2016-5067 affects Sierra Wireless GX 440 devices running ALEOS firmware version 4.3.2.
4
What type of vulnerability is CVE-2016-5067?
CVE-2016-5067 is an AT command injection vulnerability allowing for unauthorized remote control.
5
Is CVE-2016-5067 being actively exploited?
As of the last reports, there have been indications of CVE-2016-5067 being actively exploited in the wild.