PT-2017-3775 · Moxa · Moxa Eds+1

Published

2017-11-13

·

Updated

2020-10-19

·

CVE-2019-6518

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions Moxa EDS and IKS (affected versions not specified)
Description The issue is related to the storage of passwords in plaintext, which could allow an attacker to gain unauthorized access to sensitive information. This could potentially be exploited by someone with access to the device, allowing them to read sensitive information.
Recommendations For Moxa EDS and IKS, consider restricting access to the devices to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Missing Encryption of Sensitive Data

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2019-01125
CVE-2019-6518

Affected Products

Moxa Eds
Moxa Iks