CVE-2018-4070: Infoleak
An exploitable Information Disclosure vulnerability exists in the ACEManager EmbeddedAceGetTask.cgi functionality of Sierra Wireless AirLink ES450 FW 4.9.3. This binary does not have any restricted configuration settings, so once the MSCIID is discovered, any authenticated user can send configuration changes using the /cgi-bin/EmbeddedAceGetTask.cgi endpoint.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this information disclosure vulnerability?
The vulnerability ID for this information disclosure vulnerability is CVE-2018-4070.
What is the affected software version for this vulnerability?
The affected software version for this vulnerability is Sierra Wireless AirLink ES450 FW 4.9.3.
What is the severity rating of CVE-2018-4070?
The severity rating of CVE-2018-4070 is high, with a CVSS score of 8.8.
How can an attacker exploit this vulnerability?
An attacker can exploit this vulnerability by sending a malicious request to the ACEManager embeddedAceGet_Task.cgi functionality.
Is there a fix available for this vulnerability?
It is recommended to upgrade to a patched version of Sierra Wireless AirLink ES450 FW.