PT-2024-10001 · Moxa · Moxa Vport 07-3+1
Yu-Hsiang Huang
·
Published
2024-12-04
·
Updated
2025-06-13
·
CVE-2024-9404
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Moxa VPort 07-3 version 1.0
Moxa IP Cameras (affected versions not specified)
Description
This issue could lead to denial-of-service or service crashes. Exploitation of the
moxa cmd service, due to insufficient input validation, allows attackers to disrupt operations. If exposed to public networks, the issue poses a significant remote threat, potentially allowing attackers to shut down affected systems.Recommendations
For Moxa IP Cameras, consider restricting access to the
moxa cmd service to minimize the risk of exploitation.
For Moxa VPort 07-3 version 1.0, restrict access to the moxa cmd service until a patch is available.
As a temporary workaround, consider disabling the moxa cmd service until a patch is available.Fix
DoS
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Moxa Ip Cameras
Moxa Vport 07-3