PT-2016-6693 · Moxa · Moxa Oncell G3251+4
Published
2016-08-24
·
Updated
2016-11-28
·
CVE-2016-5812
CVSS v3.1
3.3
Low
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Moxa OnCell G3100V2 versions prior to 2.8
Moxa OnCell G3111 versions prior to 1.7
Moxa OnCell G3151 versions prior to 1.7
Moxa OnCell G3211 versions prior to 1.7
Moxa OnCell G3251 versions prior to 1.7
Description
The issue allows local users to easily obtain sensitive information by reading a configuration file due to the use of cleartext password storage.
Recommendations
For Moxa OnCell G3100V2 versions prior to 2.8, update to version 2.8 or later.
For Moxa OnCell G3111 versions prior to 1.7, update to version 1.7 or later.
For Moxa OnCell G3151 versions prior to 1.7, update to version 1.7 or later.
For Moxa OnCell G3211 versions prior to 1.7, update to version 1.7 or later.
For Moxa OnCell G3251 versions prior to 1.7, update to version 1.7 or later.
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Moxa Oncell G3100V2
Moxa Oncell G3111
Moxa Oncell G3151
Moxa Oncell G3211
Moxa Oncell G3251