PT-2016-2707 · Moxa · Moxa Oncell G3251+4

Publicado

2016-08-24

·

Atualizado

2016-11-28

·

CVE-2016-5799

CVSS v3.1

10

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Moxa OnCell G3100V2 versions prior to 2.8 Moxa OnCell G3111 versions prior to 1.7 Moxa OnCell G3151 versions prior to 1.7 Moxa OnCell G3211 versions prior to 1.7 Moxa OnCell G3251 versions prior to 1.7
Description The issue is related to improper restriction of authentication attempts, making it easier for remote attackers to obtain access via a brute-force attack. This allows a remote attacker to gain access to the device.
Recommendations For Moxa OnCell G3100V2 versions prior to 2.8, update to version 2.8 or later. For Moxa OnCell G3111, G3151, G3211, and G3251 versions prior to 1.7, update to version 1.7 or later. As a temporary workaround, consider restricting access to the device to minimize the risk of exploitation.

Correção

Improper Authorization

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2016-02101
CVE-2016-5799

Produtos afetados

Moxa Oncell G3100V2
Moxa Oncell G3111
Moxa Oncell G3151
Moxa Oncell G3211
Moxa Oncell G3251