<?xml version="1.0" encoding="UTF-8"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>WildforTech Security Advisories — Sierra Wireless</title><description>Actively exploited vulnerabilities affecting Sierra Wireless products.</description><link>https://wildfortech.com</link><atom:link href="https://wildfortech.com/security/vendor/sierra-wireless.xml" rel="self" type="application/rss+xml"/><item><title>CVE-2018-4063 — Sierra Wireless AirLink ALEOS Unrestricted Upload of File with Dangerous Type Vulnerability</title><link>https://wildfortech.com/security#CVE-2018-4063</link><guid isPermaLink="true">https://wildfortech.com/security#CVE-2018-4063</guid><description>This vulnerability in Sierra Wireless AirLink ALEOS allows an authenticated attacker to upload a dangerous file type via a crafted HTTP request. Once uploaded, that file is executable and reachable through the web server, meaning an attacker who gains valid credentials can achieve remote code execution on the device. Because these are cellular gateway devices often used in critical or industrial environments, a compromise could affect network connectivity and downstream systems.</description><pubDate>Fri, 12 Dec 2025 00:00:00 GMT</pubDate><category>Sierra Wireless</category><category>AirLink ALEOS</category></item></channel></rss>