PT-2022-10168 · Moxa · Moxa Nport Iaw5000A-I/O

Evgeniy Druzhinin

+2

·

Published

2022-04-01

·

Updated

2022-04-11

·

CVE-2021-32970

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Moxa NPort IAW5000A-I/O series firmware versions prior to 2.3
Description The issue allows data to be copied without validation in the built-in web server, potentially enabling a remote attacker to cause denial-of-service conditions.
Recommendations For Moxa NPort IAW5000A-I/O series firmware versions prior to 2.3, update to firmware version 2.3 or later to resolve the issue.

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-32970

Affected Products

Moxa Nport Iaw5000A-I/O