PT-2020-6024 · Moxa · Nport Iaw5250A-6I/O
Published
2020-10-09
·
Updated
2020-10-09
CVSS v2.0
6.8
Medium
| Vector | AV:N/AC:L/Au:S/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
No specific software or version is mentioned in the provided description.
Description
The issue is related to the
webSetFrmUpgrade function of an embedded web server, which is vulnerable due to a buffer copy without checking the size of the input data. This could allow a remote attacker to elevate their privileges and cause a denial of service using a specially crafted packet.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Nport Iaw5250A-6I/O