Security News > 2018 > May > Sierra Wireless Patches Critical Vulns in Range of Wireless Routers

Sierra Wireless Patches Critical Vulns in Range of Wireless Routers
2018-05-08 20:27

Sierra Wireless has patched two critical vulnerabilities for its range of wireless gateways that would leave the enterprise devices helpless to an array of remote threats, including the charms of the Reaper IoT botnet. The more critical of the two (with a 9.4 CVSSv3 Temp Score) is a privilege-escalation bug (CVE-2018-10251), which could allow a […]


News URL

https://threatpost.com/sierra-wireless-patches-critical-vulns-in-hundreds-of-thousands-of-wireless-routers/131804/

Related Vulnerability

DATE CVE VULNERABILITY TITLE RISK
2018-05-04 CVE-2018-10251 Missing Authorization vulnerability in Sierrawireless Aleos
A vulnerability in Sierra Wireless AirLink GX400, GX440, ES440, and LS300 routers with firmware before 4.4.7 and GX450, ES450, RV50, RV50X, MP70, and MP70E routers with firmware before 4.9.3 could allow an unauthenticated remote attacker to execute arbitrary code and gain full control of an affected system, including issuing commands with root privileges.
network
low complexity
sierrawireless CWE-862
critical
9.8