CVE-2019-11857: Sierra Wireless ALEOS
Medium severity, CVSS 4.9. EPSS: 2.1% chance of exploitation in the next 30 days.
Lack of input sanitization in AceManager of ALEOS before 4.12.0, 4.9.5 and 4.4.9 allows disclosure of sensitive system information.
Affected products
- Sierra Wireless ALEOS: before 4.12.0 (fixed in 4.12.0); up to and including 4.9.4; up to and including 4.4.8
Published 2020-08-21. Last modified 2026-06-17.