Vulnerabilities > Sierra Wireless

DATE CVE VULNERABILITY TITLE RISK
2017-06-30 CVE-2017-6046 Information Exposure vulnerability in Sierra Wireless products
An Insufficiently Protected Credentials issue was discovered in Sierra Wireless AirLink Raven XE, all versions prior to 4.0.14, and AirLink Raven XT, all versions prior to 4.0.11.
network
low complexity
sierra-wireless CWE-200
5.0
2017-06-30 CVE-2017-6044 Missing Authentication for Critical Function vulnerability in Sierra Wireless products
An Improper Authorization issue was discovered in Sierra Wireless AirLink Raven XE, all versions prior to 4.0.14, and AirLink Raven XT, all versions prior to 4.0.11.
network
low complexity
sierra-wireless CWE-306
critical
10.0
2017-06-30 CVE-2017-6042 Cross-Site Request Forgery (CSRF) vulnerability in Sierra Wireless products
A Cross-Site Request Forgery issue was discovered in Sierra Wireless AirLink Raven XE, all versions prior to 4.0.14, and AirLink Raven XT, all versions prior to 4.0.11.
6.8
2015-02-23 CVE-2015-2054 Unspecified vulnerability in Sierra Wireless products
CRLF injection vulnerability in export.cfg in the web-based administrative console for Sierra Wireless AirCard 760S, 762S, and 763S allows remote attackers to inject arbitrary headers via CRLF sequences in the save parameter.
network
sierra-wireless
4.3