PT-2018-5368 · Moxa · Moxa Edr-810
CVE-2017-12127
·
Publicado
2018-05-14
·
Atualizado
2022-12-09
CVSS v3.1
4.4
Média
| Vetor | AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Moxa EDR-810 version 4.1 build 17030317
Description
A password storage issue exists in the operating system functionality, allowing an attacker with shell access to extract passwords in clear text from the device.
Recommendations
For Moxa EDR-810 version 4.1 build 17030317, consider restricting shell access to the device until a fix is available. As a temporary workaround, limit the privileges of users with shell access to minimize the risk of exploitation.
Exploit
Correção
Insufficiently Protected Credentials
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Moxa Edr-810