PT-2018-14433 · Moxa · Moxa Thingspro Iiot Gateway/Device Management Software Solutions

Alexander Nochvay

·

Published

2018-10-19

·

Updated

2018-12-03

·

CVE-2018-18390

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Moxa ThingsPro IIoT Gateway and Device Management Software Solutions version 2.1
Description The issue concerns user enumeration in the affected software.
Recommendations For version 2.1, update to a version that fixes the user enumeration issue, if available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-18390

Affected Products

Moxa Thingspro Iiot Gateway/Device Management Software Solutions