PT-2026-49632 · Moxa · Nport 6000-G2 Series

Published

2026-06-16

·

Updated

2026-06-16

·

CVE-2026-10825

CVSS v4.0

7.1

High

VectorAV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
A denial-of-service vulnerability exists in the WebSocket API due to insufficient validation and handling of JSON-based requests. A low-privileged authenticated attacker can send a specially crafted request that causes service disruption and may result in an unexpected device reboot.

Fix

Weakness Enumeration

Related Identifiers

CVE-2026-10825

Affected Products

Nport 6000-G2 Series