Vulnonym.com

CVE-2015-2897 - Cistaceous Bail

Description

Sierra Wireless ALEOS before 4.4.2 on AirLink ES GX and LS devices has hardcoded root accounts which makes it easier for remote attackers to obtain administrative access via a (1) SSH or (2) TELNET session.

Reference

http://www.kb.cert.org/vuls/id/628568