CVE-2019-11853

LOW

ALEOS <4.11.0, 4.9.4 - Command Injection

Title source: llm
STIX 2.1

Description

Several potential command injections vulnerabilities exist in the AT command interface of ALEOS before 4.11.0, and 4.9.4.

Scores

CVSS v3 3.9
EPSS 0.0125
EPSS Percentile 65.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:L/I:L/A:L

Details

CWE
CWE-77
Status published
Products (1)
sierrawireless/aleos < 4.11.0
Published Aug 21, 2020
Tracked Since Feb 18, 2026