📦 Aleos Firmware

by Sierrawireless

🔍 What is Aleos Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2016-5065

CRITICAL CVSS 9.8 Apr 10, 2017

CVE-2016-5065 is a command injection vulnerability in Sierra Wireless GX 440 devices running ALEOS firmware 4.3.2. Attackers can execute arbitrary commands on affected devices via the Embedded_Ace_Set...

CVE-2016-5068

CRITICAL CVSS 9.8 Apr 10, 2017

Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 have an authentication bypass vulnerability in the Embedded_Ace_Get_Task.cgi endpoint. This allows unauthenticated attackers to execute arbitra...

CVE-2016-5070

CRITICAL CVSS 9.8 Apr 10, 2017

Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 store passwords in cleartext, allowing attackers with access to the device's storage or configuration files to read sensitive credentials. This...