CVE-2023-31279

The AirVantage platform is vulnerable to an unauthorized attacker registering previously unregistered 
devices on the AirVantage platform when the owner has not disabled the AirVantage Management 
Service on the devices or registered the device. This could enable an attacker to configure, manage, 
and execute AT commands on an unsuspecting users devices.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
8.1 HIGH
NETWORK
LOW
LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
SWICNA
8.1 HIGH
NETWORK
LOW
LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
CISA-ADPADP
---
---