CVE Vulnerabilities

CVE-2015-2054

Published: Feb 23, 2015 | Modified: Nov 30, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

CRLF injection vulnerability in export.cfg in the web-based administrative console for Sierra Wireless AirCard 760S, 762S, and 763S allows remote attackers to inject arbitrary headers via CRLF sequences in the save parameter.

Affected Software

Name Vendor Start Version End Version
Sierra_wireless_aircard_760s Sierra_wireless * *
Sierra_wireless_aircard_762s Sierra_wireless * *
Sierra_wireless_aircard_763s Sierra_wireless * *

References