PT-2018-5639 · Moxa · Moxa Edr-810
Publicado
2018-05-14
·
Atualizado
2022-12-08
·
CVE-2017-14438
CVSS v3.1
7.5
Alta
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions:
Moxa EDR-810 version 4.1 build 17030317
Description:
A denial of service issue exists in the Service Agent functionality, allowing an attacker to cause a denial of service by sending a specially crafted packet. The attacker can trigger this issue by sending a large packet to the "4000/tcp" endpoint.
Recommendations:
For Moxa EDR-810 version 4.1 build 17030317, consider restricting access to the "4000/tcp" endpoint to minimize the risk of exploitation until a patch is available.
Exploit
Correção
RCE
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Moxa Edr-810