PT-2018-5368 · Moxa · Moxa Edr-810

Published

2018-05-14

·

Updated

2022-12-09

·

CVE-2017-12127

CVSS v3.1

4.4

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Moxa EDR-810 version 4.1 build 17030317
Description A password storage issue exists in the operating system functionality, allowing an attacker with shell access to extract passwords in clear text from the device.
Recommendations For Moxa EDR-810 version 4.1 build 17030317, consider restricting shell access to the device until a fix is available. As a temporary workaround, limit the privileges of users with shell access to minimize the risk of exploitation.

Exploit

Fix

Insufficiently Protected Credentials

Weakness Enumeration

Related Identifiers

CVE-2017-12127

Affected Products

Moxa Edr-810