Vulnerabilities > CVE-2019-11862 - Incorrect Authorization vulnerability in Sierrawireless Aleos

047910
CVSS 4.6 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
local
low complexity
sierrawireless
CWE-863

Summary

The SSH service on ALEOS before 4.12.0, 4.9.5, 4.4.9 allows traffic proxying.

Common Weakness Enumeration (CWE)