PT-2016-2707 · Moxa · Moxa Oncell G3251+4
Publicado
2016-08-24
·
Atualizado
2016-11-28
·
CVE-2016-5799
CVSS v3.1
10
Crítica
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Moxa OnCell G3100V2 versions prior to 2.8
Moxa OnCell G3111 versions prior to 1.7
Moxa OnCell G3151 versions prior to 1.7
Moxa OnCell G3211 versions prior to 1.7
Moxa OnCell G3251 versions prior to 1.7
Description
The issue is related to improper restriction of authentication attempts, making it easier for remote attackers to obtain access via a brute-force attack. This allows a remote attacker to gain access to the device.
Recommendations
For Moxa OnCell G3100V2 versions prior to 2.8, update to version 2.8 or later.
For Moxa OnCell G3111, G3151, G3211, and G3251 versions prior to 1.7, update to version 1.7 or later.
As a temporary workaround, consider restricting access to the device to minimize the risk of exploitation.
Correção
Improper Authorization
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Moxa Oncell G3100V2
Moxa Oncell G3111
Moxa Oncell G3151
Moxa Oncell G3211
Moxa Oncell G3251