PT-2021-6069 · Moxa · Moxa Mgate 5109+2
Qian Chen
·
Published
2021-12-28
·
Updated
2022-02-26
·
CVE-2021-46082
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Moxa TN-5900 version 3.1
Moxa MGate 5109 version 2.2
Moxa MGate 5101-PBM-MN version 2.1
Description
The issue is related to a memory leak that can be exploited by attackers to cause a Denial of Service (DoS) via crafted packets. This can be achieved by a remote attacker, allowing them to disrupt service.
Recommendations
For Moxa TN-5900 version 3.1, update the firmware to a version that addresses the memory leak issue.
For Moxa MGate 5109 version 2.2, apply configuration changes to prevent exploitation of the memory leak.
For Moxa MGate 5101-PBM-MN version 2.1, restrict access to the device to minimize the risk of exploitation until a patch is available.
Fix
Memory Leak
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Moxa Mgate 5101-Pbm-Mn
Moxa Mgate 5109
Moxa Tn-5900