← Back

CVE-2020-8781

nvd nist
Published: Oct 6, 2020Modified: Nov 21, 2024

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

Lack of input sanitization in UpdateRebootMgr service of ALEOS 4.11 and later allow an escalation to root from a low-privilege process.

Affected (1)

Aleos
Configuration A
1 vulnerable · 13 platform
Vulnerable SoftwareAffected Versions
From 4.11.0 to 4.14.0
Running on/withPlatform Versions
Sierrawireless
Airlink Es440
All versions
Sierrawireless
Airlink Es450
All versions
Sierrawireless
Airlink Gx400
All versions
Sierrawireless
Airlink Gx440
All versions
Sierrawireless
Airlink Gx450
All versions
Sierrawireless
Airlink Ls300
All versions
Sierrawireless
Airlink Lx40
All versions
Sierrawireless
Airlink Lx60
All versions
Sierrawireless
Airlink Mp70
All versions
Sierrawireless
Airlink Mp70e
All versions
Sierrawireless
Airlink Rv50
All versions
Sierrawireless
Airlink Rv50x
All versions
Sierrawireless
Airlink Rv55
All versions

Timeline

No history available yet.