PT-2022-10168 · Moxa · Moxa Nport Iaw5000A-I/O
Evgeniy Druzhinin
+2
·
Published
2022-04-01
·
Updated
2022-04-11
·
CVE-2021-32970
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Moxa NPort IAW5000A-I/O series firmware versions prior to 2.3
Description
The issue allows data to be copied without validation in the built-in web server, potentially enabling a remote attacker to cause denial-of-service conditions.
Recommendations
For Moxa NPort IAW5000A-I/O series firmware versions prior to 2.3, update to firmware version 2.3 or later to resolve the issue.
Fix
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Moxa Nport Iaw5000A-I/O