CVE-2020-13712: Sierra Wireless Mgos
High severity, CVSS 7.8. EPSS: 0.6% chance of exploitation in the next 30 days.
A command injection is possible through the user interface, allowing arbitrary command execution as the root user. oMG2000 running MGOS 3.15.1 or earlier is affected. MG90 running MGOS 4.2.1 or earlier is affected.
Affected products
- Sierra Wireless Mgos: before 3.15.1 (fixed in 3.15.1); before 4.2.1 (fixed in 4.2.1)
Published 2024-12-20. Last modified 2026-06-17.