An exploitable information disclosure vulnerability exists in the ACEManager functionality of Sierra Wireless AirLink ES450 FW 4.9.3. A HTTP request can result in disclosure of the default configuration for the device. An attacker can send an unauthenticated HTTP request to trigger this vulnerability.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: talos

Published: 2019-05-06T17:50:44

Updated: 2019-05-06T17:50:44

Reserved: 2018-01-02T00:00:00


Link: CVE-2018-4068

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-05-06T18:29:00.413

Modified: 2019-05-07T18:08:29.957


Link: CVE-2018-4068

JSON object: View

cve-icon Redhat Information

No data.

CWE