High severity8.8NVD Advisory· Published Feb 10, 2023· Updated Jun 17, 2026
CVE-2022-46649
CVE-2022-46649
Description
Acemanager in ALEOS before version 4.16 allows a user with valid credentials to manipulate the IP logging operation to execute arbitrary shell commands on the device.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:o:sierrawireless:aleos:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:sierrawireless:aleos:*:*:*:*:*:*:*:*range: <=4.9.7
- (no CPE)range: <4.16
- ALEOS/ALEOSdescription
- Range: <4.16
Patches
Vulnerability mechanics
References
3- www.otorio.com/blog/airlink-acemanager-vulnerabilities/nvdExploitThird Party Advisory
- source.sierrawireless.com/resources/security-bulletins/sierra-wireless-technical-bulletin---swi-psa-2023-001/nvdVendor Advisory
- www.cisa.gov/uscert/ics/advisories/icsa-23-026-04nvdThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.