CVE-2019-11847

HIGH

ALEOS <4.11.0-4.4.9 - Privilege Escalation

Title source: llm
STIX 2.1

Description

An improper privilege management vulnerabitlity exists in ALEOS before 4.11.0, 4.9.4 and 4.4.9. An authenticated user can escalate to root via the command shell.

Scores

CVSS v3 7.3
EPSS 0.0040
EPSS Percentile 31.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-269
Status published
Products (1)
sierrawireless/aleos < 4.11.0
Published Aug 21, 2020
Tracked Since Feb 18, 2026