The Sierra Wireless AirLink Raven X EV-DO gateway 4221_4.0.11.003 and 4228_4.0.11.003 allows remote attackers to install Trojan horse firmware by leveraging cleartext credentials in a crafted (1) update or (2) reprogramming action.

Project Subscriptions

Vendors Products
Sierrawireless Subscribe
Airlink Mp At\&t Subscribe
Airlink Mp At\&t Wifi Subscribe
Airlink Mp Bell Subscribe
Airlink Mp Bell Wifi Subscribe
Airlink Mp Row Subscribe
Airlink Mp Row Wifi Subscribe
Airlink Mp Sprint Subscribe
Airlink Mp Sprint Wifi Subscribe
Airlink Mp Telus Subscribe
Airlink Mp Telus Wifi Subscribe
Airlink Mp Verizon Subscribe
Airlink Mp Verizon Wifi Subscribe
Pinpoint X Subscribe
Pinpoint Xt Subscribe
Raven X Subscribe
Raven X Ev-do Subscribe
Raven X Ev-do Firmware Subscribe
Raven Xe Subscribe
Raven Xt Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2013-2758 The Sierra Wireless AirLink Raven X EV-DO gateway 4221_4.0.11.003 and 4228_4.0.11.003 allows remote attackers to install Trojan horse firmware by leveraging cleartext credentials in a crafted (1) update or (2) reprogramming action.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2024-08-06T15:52:19.910Z

Reserved: 2013-04-11T00:00:00

Link: CVE-2013-2819

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2014-01-15T16:08:13.017

Modified: 2025-04-11T00:51:21.963

Link: CVE-2013-2819

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses