← Back

CVE-2023-40463

nvd nist
Published: Dec 4, 2023Modified: Nov 21, 2024

JSON object

Loading...
7.2
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.2 / Impact: 5.9
Source: NVD

Description

When configured in debugging mode by an authenticated user with administrative privileges, ALEOS 4.16 and earlier store the SHA512 hash of the common root password for that version in a directory accessible to a user with root privileges or equivalent access.

Affected (1)

Aleos
Configuration A
1 vulnerable · 7 platform
Vulnerable SoftwareAffected Versions
Up to 4.16.0
Running on/withPlatform Versions
Sierrawireless
Es450
All versions
Sierrawireless
Gx450
All versions
Sierrawireless
Lx40
All versions
Sierrawireless
Lx60
All versions
Sierrawireless
Mp70
All versions
Sierrawireless
Rv50x
All versions
Sierrawireless
Rv55
All versions

Timeline

No history available yet.