CVE-2023-40465
Improper input leads to DoS
Severity Score
5.5
*CVSS v3.1
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
Several versions of
ALEOS, including ALEOS 4.16.0, include an opensource
third-party
component which can be exploited from the local
area network,
resulting in a Denial of Service condition for the captive portal.
Varias versiones de ALEOS, incluida ALEOS 4.16.0, incluyen un componente de terceros de código abierto que puede explotarse desde la red de área local, lo que genera una condición de denegación de servicio para el portal cautivo.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2023-08-14 CVE Reserved
- 2023-12-04 CVE Published
- 2024-08-02 CVE Updated
- 2024-09-06 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-121: Stack-based Buffer Overflow
- CWE-122: Heap-based Buffer Overflow
- CWE-787: Out-of-bounds Write
CAPEC
- CAPEC-153: Input Data Manipulation
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Sierrawireless Search vendor "Sierrawireless" | Aleos Search vendor "Sierrawireless" for product "Aleos" | <= 4.16.0 Search vendor "Sierrawireless" for product "Aleos" and version " <= 4.16.0" | - |
Affected
| in | Sierrawireless Search vendor "Sierrawireless" | Es450 Search vendor "Sierrawireless" for product "Es450" | - | - |
Safe
|
Sierrawireless Search vendor "Sierrawireless" | Aleos Search vendor "Sierrawireless" for product "Aleos" | <= 4.16.0 Search vendor "Sierrawireless" for product "Aleos" and version " <= 4.16.0" | - |
Affected
| in | Sierrawireless Search vendor "Sierrawireless" | Gx450 Search vendor "Sierrawireless" for product "Gx450" | - | - |
Safe
|
Sierrawireless Search vendor "Sierrawireless" | Aleos Search vendor "Sierrawireless" for product "Aleos" | <= 4.16.0 Search vendor "Sierrawireless" for product "Aleos" and version " <= 4.16.0" | - |
Affected
| in | Sierrawireless Search vendor "Sierrawireless" | Lx40 Search vendor "Sierrawireless" for product "Lx40" | - | - |
Safe
|
Sierrawireless Search vendor "Sierrawireless" | Aleos Search vendor "Sierrawireless" for product "Aleos" | <= 4.16.0 Search vendor "Sierrawireless" for product "Aleos" and version " <= 4.16.0" | - |
Affected
| in | Sierrawireless Search vendor "Sierrawireless" | Lx60 Search vendor "Sierrawireless" for product "Lx60" | - | - |
Safe
|
Sierrawireless Search vendor "Sierrawireless" | Aleos Search vendor "Sierrawireless" for product "Aleos" | <= 4.16.0 Search vendor "Sierrawireless" for product "Aleos" and version " <= 4.16.0" | - |
Affected
| in | Sierrawireless Search vendor "Sierrawireless" | Mp70 Search vendor "Sierrawireless" for product "Mp70" | - | - |
Safe
|
Sierrawireless Search vendor "Sierrawireless" | Aleos Search vendor "Sierrawireless" for product "Aleos" | <= 4.16.0 Search vendor "Sierrawireless" for product "Aleos" and version " <= 4.16.0" | - |
Affected
| in | Sierrawireless Search vendor "Sierrawireless" | Rv50x Search vendor "Sierrawireless" for product "Rv50x" | - | - |
Safe
|
Sierrawireless Search vendor "Sierrawireless" | Aleos Search vendor "Sierrawireless" for product "Aleos" | <= 4.16.0 Search vendor "Sierrawireless" for product "Aleos" and version " <= 4.16.0" | - |
Affected
| in | Sierrawireless Search vendor "Sierrawireless" | Rv55 Search vendor "Sierrawireless" for product "Rv55" | - | - |
Safe
|