PT-2026-35345 · Moxa · Secure Router

Published

2026-04-27

·

Updated

2026-04-28

·

CVE-2026-3867

CVSS v4.0

6.0

Medium

VectorAV:N/AC:L/AT:P/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions Moxa Secure Router (affected versions not specified)
Description Improper ownership management allows a low-privileged authenticated user to access a configuration file containing the hashed password of the administrative account. This can lead to the disclosure of sensitive information. Exploitation is only possible if the configuration file has been exported. This issue does not affect the integrity or availability of the product or subsequent systems.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-3867

Affected Products

Secure Router