CVE-2023-31279: Sierra Wireless Airvantage, Airvantage-Capable Devices: All Sierra Wireless Devices

High severity, CVSS 8.1. EPSS: 0.4% chance of exploitation in the next 30 days.

The AirVantage platform is vulnerable to an unauthorized attacker registering previously unregistered devices on the AirVantage platform when the owner has not disabled the AirVantage Management Service on the devices or registered the device. This could enable an attacker to configure, manage, and execute AT commands on an unsuspecting user’s devices.

Affected products

  • Sierra Wireless Airvantage, Airvantage-Capable Devices: All Sierra Wireless Devices

Published 2024-12-21. Last modified 2026-06-17.