CVE-2015-2054

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
23/02/2015
Last modified:
12/04/2025

Description

CRLF injection vulnerability in export.cfg in the web-based administrative console for Sierra Wireless AirCard 760S, 762S, and 763S allows remote attackers to inject arbitrary headers via CRLF sequences in the save parameter.

Vulnerable products and versions

CPE From Up to
cpe:2.3:h:sierra_wireless:sierra_wireless_aircard_760s:*:*:*:*:*:*:*:*
cpe:2.3:h:sierra_wireless:sierra_wireless_aircard_762s:*:*:*:*:*:*:*:*
cpe:2.3:h:sierra_wireless:sierra_wireless_aircard_763s:*:*:*:*:*:*:*:*