Direct naar de inhoud
Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
cybernieuws.nl Cybersecurity en informatiebeveiling nieuws alerts live · 5 min 108 bronnen 2 kritiek 31 vandaag
CVE's Videos

← Terug naar CVE-database

CVE-2017-6044

CRITICAL · 9.8 CVSS Gepubliceerd: CWE-285

Beschrijving

An Improper Authorization issue was discovered in Sierra Wireless AirLink Raven XE, all versions prior to 4.0.14, and AirLink Raven XT, all versions prior to 4.0.11. Several files and directories can be accessed without authentication, which may allow a remote attacker to perform sensitive functions including arbitrary file upload, file download, and device reboot.

Vendors

Sierra Wireless

Affected products

Airlink Raven Xe Firmware Airlink Raven Xe Airlink Raven Xt Firmware Airlink Raven Xt

References