High severity7.5NVD Advisory· Published Dec 4, 2023· Updated Jun 17, 2026
CVE-2023-40462
CVE-2023-40462
Description
The ACEManager component of ALEOS 4.16 and earlier does not
perform input sanitization during authentication, which could
potentially result in a Denial of Service (DoS) condition for
ACEManager without impairing other router functions. ACEManager
recovers from the DoS condition by restarting within ten seconds of
becoming unavailable.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:o:sierrawireless:aleos:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:o:sierrawireless:aleos:*:*:*:*:*:*:*:*range: <=4.16.0
- (no CPE)range: <=4.16
- (no CPE)range: 4.10
Patches
Vulnerability mechanics
References
2- lists.debian.org/debian-lts-announce/2023/12/msg00024.htmlnvdMailing ListThird Party Advisory
- source.sierrawireless.com/resources/security-bulletins/sierra-wireless-technical-bulletin---swi-psa-2023-006/nvdVendor Advisory
News mentions
0No linked articles in our index yet.