Security Advisory

CVE-2018-4062

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-05-06 18:28:04
Last updated 2024-08-05 05:04:28
Assigner talos
CVSS score not scored
State PUBLISHED

Description

A hard-coded credentials vulnerability exists in the snmpd function of the Sierra Wireless AirLink ES450 FW 4.9.3. Activating snmpd outside of the WebUI can cause the activation of the hard-coded credentials, resulting in the exposure of a privileged user. An attacker can activate snmpd without any configuration changes to trigger this vulnerability.