CVE-2018-4062: Critical severity Sierrawireless Airlink Es450 Firmware vulnerability
A hard-coded credentials vulnerability exists in the snmpd function of the Sierra Wireless AirLink ES450 FW 4.9.3. Activating snmpd outside of the WebUI can cause the activation of the hard-coded credentials, resulting in the exposure of a privileged user. An attacker can activate snmpd without any configuration changes to trigger this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-4062?
CVE-2018-4062 is a hard-coded credentials vulnerability in the snmpd function of the Sierra Wireless AirLink ES450 FW 4.9.3.
How can the hard-coded credentials vulnerability in CVE-2018-4062 be exploited?
Activating snmpd outside of the WebUI can cause the activation of the hard-coded credentials, resulting in the exposure of a privileged user.
What is the severity of CVE-2018-4062?
CVE-2018-4062 has a severity rating of 8.1 (critical).
What software versions are affected by the hard-coded credentials vulnerability in CVE-2018-4062?
The Sierra Wireless AirLink ES450 FW 4.9.3 is affected by the hard-coded credentials vulnerability.
Are there any references for CVE-2018-4062?
Yes, you can find more information about CVE-2018-4062 at the following references: [1] [2] [3]