Vulnerability Details CVE-2013-2819
The Sierra Wireless AirLink Raven X EV-DO gateway 4221_4.0.11.003 and 4228_4.0.11.003 allows remote attackers to install Trojan horse firmware by leveraging cleartext credentials in a crafted (1) update or (2) reprogramming action.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 0.7%
CVSS Severity
CVSS v2 Score 9.3
Products affected by CVE-2013-2819
-
cpe:2.3:h:sierrawireless:airlink_mp_at&t:-
-
cpe:2.3:h:sierrawireless:airlink_mp_at&t_wifi:-
-
cpe:2.3:h:sierrawireless:airlink_mp_bell:-
-
cpe:2.3:h:sierrawireless:airlink_mp_bell_wifi:-
-
cpe:2.3:h:sierrawireless:airlink_mp_row:-
-
cpe:2.3:h:sierrawireless:airlink_mp_row_wifi:-
-
cpe:2.3:h:sierrawireless:airlink_mp_sprint:-
-
cpe:2.3:h:sierrawireless:airlink_mp_sprint_wifi:-
-
cpe:2.3:h:sierrawireless:airlink_mp_telus:-
-
cpe:2.3:h:sierrawireless:airlink_mp_telus_wifi:-
-
cpe:2.3:h:sierrawireless:airlink_mp_verizon:-
-
cpe:2.3:h:sierrawireless:airlink_mp_verizon_wifi:-
-
cpe:2.3:h:sierrawireless:pinpoint_x:-
-
cpe:2.3:h:sierrawireless:pinpoint_xt:-
-
cpe:2.3:h:sierrawireless:raven_x:-
-
cpe:2.3:h:sierrawireless:raven_x_ev-do:-
-
cpe:2.3:h:sierrawireless:raven_xe:-
-
cpe:2.3:h:sierrawireless:raven_xt:-
-
cpe:2.3:o:sierrawireless:raven_x_ev-do_firmware:4221_4.0.11.003
-
cpe:2.3:o:sierrawireless:raven_x_ev-do_firmware:4228_4.0.11.003