CVE-2019-11847: Sierra Wireless ALEOS
High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.
An improper privilege management vulnerabitlity exists in ALEOS before 4.11.0, 4.9.4 and 4.4.9. An authenticated user can escalate to root via the command shell.
Affected products
- Sierra Wireless ALEOS: before 4.11.0 (fixed in 4.11.0); before 4.9.4 (fixed in 4.9.4); before 4.4.9 (fixed in 4.4.9)
Published 2020-08-21. Last modified 2026-06-17.