CVE-2019-11851Classic Buffer Overflow in Aleos

Severity
9.8CRITICALNVD
EPSS
0.1%
top 77.06%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 26
Latest updateDec 27

Description

The ACENet service in Sierra Wireless ALEOS before 4.4.9, 4.5.x through 4.9.x before 4.9.5, and 4.10.x through 4.13.x before 4.14.0 allows remote attackers to execute arbitrary code via a buffer overflow.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages1 packages

NVDsierrawireless/aleos4.10.04.14.0+2

🔴Vulnerability Details

1
GHSA
GHSA-hqqr-2352-48q8: The ACENet service in Sierra Wireless ALEOS before 42022-12-27

🕵️Threat Intelligence

1
Tenable
CVE-2019-11581: Critical Template Injection Vulnerability in Atlassian Jira Server and Data Center2019-07-11
CVE-2019-11851 — Classic Buffer Overflow in Aleos | cvebase