CVE-2018-4068: Sierra Wireless AirLink ES450 Firmware

Medium severity, CVSS 5.3. EPSS: 11.4% chance of exploitation in the next 30 days.

An exploitable information disclosure vulnerability exists in the ACEManager functionality of Sierra Wireless AirLink ES450 FW 4.9.3. A HTTP request can result in disclosure of the default configuration for the device. An attacker can send an unauthenticated HTTP request to trigger this vulnerability.

Affected products

Published 2019-05-06. Last modified 2026-06-17.