Story perspectives
Cybersecurity Alert: Exploits Target Sierra Wireless Routers, Chrome
12/15/2025
50 6
1 of 1
Story summary
- U.S. Cybersecurity and Infrastructure Security Agency (CISA) added CVE-2018-4063 to the Known Exploited Vulnerabilities catalog after exploitation of Sierra Wireless AirLink ALEOS routers.
- CVE-2018-4063 enables remote code execution via a malicious HTTP request.
- Disclosed in 2019, the flaw affected devices that reached end-of-life in August 2021.
- Industrial routers are prime targets, per a recent analysis.
- CVE-2025-14174 in Google Chrome is being exploited, with agencies urging updates by January 2, 2026.
