CVE-2013-2819 - CVE House
Back to Database
Status published Critical CVE-2013-2819

The Sierra Wireless AirLink Raven X EV-DO gateway 4221_4.0.11.003 and...

Vulnerability Description

The Sierra Wireless AirLink Raven X EV-DO gateway 4221_4.0.11.003 and 4228_4.0.11.003 allows remote attackers to install Trojan horse firmware by leveraging cleartext credentials in a crafted (1) update or (2) reprogramming action.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2013-2819

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

sierrawireless

View all reports →

Affected Software

raven x ev-do firmware, airlink mp at\&t, airlink mp at\&t wifi, airlink mp bell, airlink mp bell wifi, airlink mp row, airlink mp row wifi, airlink mp sprint, airlink mp sprint wifi, airlink mp telus, airlink mp telus wifi, airlink mp verizon, airlink mp verizon wifi, pinpoint x, pinpoint xt, raven x, raven x ev-do, raven xe, raven xt
Vulnerable Versions:
4221_4.0.11.003, 4228_4.0.11.003

Timeline

Official Publish: January 15th, 2014
Last Modified: August 6th, 2024
Added to House: July 19th, 2026

CVSS Vectors

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.