Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2015-2054

Overview

Vulnerability Score 4.3 4.3
CVE Id CVE-2015-2054
Last Modified 24 Feb 2015 12:13:32
Published 23 Feb 2015 12:59:11
Confidentiality Impact NONE NONE
Integrity Impact PARTIAL PARTIAL
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity MEDIUM
Authentication NONE

CVE-2015-2054

Summary

CRLF injection vulnerability in export.cfg in the web-based administrative console for Sierra Wireless AirCard 760S, 762S, and 763S allows remote attackers to inject arbitrary headers via CRLF sequences in the save parameter.

Vulnerable Systems


References

FULLDISC - 20150114 Sierra Wireless AirCard 760S/762S/763S Mobile Hotspot CRLF Injection


Last Updated: 27 May 2016 11:07:55