9.3
CVSSv2

CVE-2013-2819

Published: 15/01/2014 Updated: 16/01/2014
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

The Sierra Wireless AirLink Raven X EV-DO gateway 4221_4.0.11.003 and 4228_4.0.11.003 allows remote malicious users to install Trojan horse firmware by leveraging cleartext credentials in a crafted (1) update or (2) reprogramming action.

Vulnerable Product Search on Vulmon Subscribe to Product

sierrawireless raven_x_ev-do_firmware 4221_4.0.11.003

sierrawireless raven_x_ev-do_firmware 4228_4.0.11.003

sierrawireless pinpoint_xt -

sierrawireless pinpoint_x -

sierrawireless raven_xt -

sierrawireless raven_xe -

sierrawireless airlink_mp_at\\&t -

sierrawireless airlink_mp_bell -

sierrawireless airlink_mp_sprint_wifi -

sierrawireless airlink_mp_verizon_wifi -

sierrawireless airlink_mp_telus -

sierrawireless airlink_mp_telus_wifi -

sierrawireless airlink_mp_row -

sierrawireless airlink_mp_row_wifi -

sierrawireless airlink_mp_sprint -

sierrawireless airlink_mp_at\\&t_wifi -

sierrawireless airlink_mp_bell_wifi -

sierrawireless airlink_mp_verizon -

sierrawireless raven_x_ev-do -

sierrawireless raven_x -