PT-2026-35345 · Moxa · Secure Router
Published
2026-04-27
·
Updated
2026-04-28
·
CVE-2026-3867
CVSS v4.0
6.0
Medium
| Vector | AV:N/AC:L/AT:P/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
Moxa Secure Router (affected versions not specified)
Description
Improper ownership management allows a low-privileged authenticated user to access a configuration file containing the hashed password of the administrative account. This can lead to the disclosure of sensitive information. Exploitation is only possible if the configuration file has been exported. This issue does not affect the integrity or availability of the product or subsequent systems.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Secure Router