CVE-2020-11101

CRITICAL WAF: Low
CVSS 9.8 Published: 2022-12-26
CWE-287

Sierra Wireless AirLink Mobility Manager (AMM) before 2.17 mishandles sessions and thus an unauthenticated attacker can obtain a login session with administrator privileges.

WAF Coverage Analysis

Improper Authentication Low WAF Coverage

OWASP: A07:2021 Identification and Authentication Failures

Affected Software

VendorProductVersion
sierrawirelessairlink_mobility_managerup to 2.17

References

Back to CVE Database