Medium severity4.9NVD Advisory· Published Feb 10, 2023· Updated Jun 17, 2026
CVE-2022-46650
CVE-2022-46650
Description
Acemanager in ALEOS before version 4.16 allows a user with valid credentials to reconfigure the device to expose the ACEManager credentials on the pre-login status page.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:o:sierrawireless:aleos:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:sierrawireless:aleos:*:*:*:*:*:*:*:*range: <=4.9.7
- (no CPE)range: <4.16
- ALEOS/ALEOSdescription
Patches
Vulnerability mechanics
References
3- www.otorio.com/blog/airlink-acemanager-vulnerabilities/nvdExploitThird Party Advisory
- source.sierrawireless.com/resources/security-bulletins/sierra-wireless-technical-bulletin---swi-psa-2023-001/nvdVendor Advisory
- www.cisa.gov/uscert/ics/advisories/icsa-23-026-04nvdThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.