Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
ALEOS AT Command API Abuse
Vulnerability Description
An API abuse vulnerability exists in the AT command API of ALEOS before 4.13.0, 4.9.5, 4.4.9 due to lack of length checking when handling certain user-provided values.
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:L/I:L/A:L
Vulnerability Type
N/A
Vulnerability Title
ALEOS 缓冲区错误漏洞
Vulnerability Description
Sierra Wireless ALEOS(AAF)是加拿大Sierra Wireless公司的用于在Sierra Wireless AirLink网关中创建应用程序的框架。 ALEOS的AT命令API在4.13.0、4.9.5、4.4.9之前版本存在API滥用漏洞,原因是在处理某些用户提供的值时缺少长度检查。
CVSS Information
N/A
Vulnerability Type
N/A