CVE-2018-4068: Sierra Wireless AirLink ES450 Firmware
Medium severity, CVSS 5.3. EPSS: 11.4% chance of exploitation in the next 30 days.
An exploitable information disclosure vulnerability exists in the ACEManager functionality of Sierra Wireless AirLink ES450 FW 4.9.3. A HTTP request can result in disclosure of the default configuration for the device. An attacker can send an unauthenticated HTTP request to trigger this vulnerability.
Affected products
- Sierra Wireless AirLink ES450 Firmware: version 4.9.3 only
Published 2019-05-06. Last modified 2026-06-17.