PT-2017-16860 · Sierra Wireless · Sierra Wireless Airlink Raven Xe
Karn Ganeshen
·
Published
2017-06-30
·
Updated
2019-10-09
·
CVE-2017-6046
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Sierra Wireless AirLink Raven XE versions prior to 4.0.14
Sierra Wireless AirLink Raven XT versions prior to 4.0.11
Description
An issue with insufficiently protected credentials was found, where sensitive information is not adequately protected during transmission and is vulnerable to sniffing, potentially leading to information disclosure.
Recommendations
For Sierra Wireless AirLink Raven XE versions prior to 4.0.14, update to version 4.0.14 or later to resolve the issue.
For Sierra Wireless AirLink Raven XT versions prior to 4.0.11, update to version 4.0.11 or later to resolve the issue.
Fix
Insufficiently Protected Credentials
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Sierra Wireless Airlink Raven Xe