QID 591348
Date Published: 2023-02-17
QID 591348: Sierra Wireless AirLink Router with ALEOS Software Remote Code Execution (RCE) Multiple Vulnerabilities (ICSA-23-026-04)
AFFECTED PRODUCTS
Airlink Router (ES450, GX450) running ALEOS software: Versions 4.9.7 and prior
Airlink Router (MP70, RV50, RV50x, RV55, LX 40, LX60) running ALEOS software: Versions prior to 4.16.0
QID Detection Logic:
This QID checks for the Vulnerable version of Sierra Wireless AirLink Router using passive scanning
Successful exploitation of these vulnerabilities could allow a loss of sensitive information and could allow remote code execution.
Solution
Customers are advised to refer to CERT MITIGATIONS section ICSA-23-026-04 for affected packages and patching details.
Vendor References
- ICSA-23-026-04 -
www.cisa.gov/uscert/ics/advisories/icsa-23-026-04
CVEs related to QID 591348
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| ICSA-23-026-04 |
|