First published: Mon Apr 10 2017(Updated: )
Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 store passwords in cleartext.
Credit: cret@cert.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sierrawireless Aleos Firmware | =4.3.2 | |
Sierrawireless Gx 440 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-5070 has a medium severity rating due to the potential for unauthorized access since passwords are stored in cleartext.
To fix CVE-2016-5070, update the ALEOS firmware to a version that does not store passwords in cleartext.
CVE-2016-5070 affects Sierra Wireless GX 440 devices running ALEOS firmware version 4.3.2.
The impact of CVE-2016-5070 is significant as it allows attackers to retrieve stored passwords, compromising device security.
As of now, there are no public exploits specifically targeting CVE-2016-5070, but the vulnerability itself poses a risk.