PT-2024-10001 · Moxa · Moxa Vport 07-3+1

Yu-Hsiang Huang

·

Published

2024-12-04

·

Updated

2025-06-13

·

CVE-2024-9404

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Moxa VPort 07-3 version 1.0 Moxa IP Cameras (affected versions not specified)
Description This issue could lead to denial-of-service or service crashes. Exploitation of the moxa cmd service, due to insufficient input validation, allows attackers to disrupt operations. If exposed to public networks, the issue poses a significant remote threat, potentially allowing attackers to shut down affected systems.
Recommendations For Moxa IP Cameras, consider restricting access to the moxa cmd service to minimize the risk of exploitation. For Moxa VPort 07-3 version 1.0, restrict access to the moxa cmd service until a patch is available. As a temporary workaround, consider disabling the moxa cmd service until a patch is available.

Fix

DoS

Weakness Enumeration

Related Identifiers

BDU:2025-00128
CVE-2024-9404

Affected Products

Moxa Ip Cameras
Moxa Vport 07-3