Vulnerabilities > Moxa > High

DATE CVE VULNERABILITY TITLE RISK
2023-12-23 CVE-2023-5961 Cross-Site Request Forgery (CSRF) vulnerability in Moxa products
A Cross-Site Request Forgery (CSRF) vulnerability has been identified in ioLogik E1200 Series firmware versions v3.3 and prior.
network
low complexity
moxa CWE-352
8.8
2023-11-01 CVE-2023-5627 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Moxa products
A vulnerability has been identified in NPort 6000 Series, making the authentication mechanism vulnerable.
network
low complexity
moxa CWE-327
7.5
2023-11-01 CVE-2023-4452 Classic Buffer Overflow vulnerability in Moxa products
A vulnerability has been identified in the EDR-810, EDR-G902, and EDR-G903 Series, making them vulnerable to the denial-of-service vulnerability.
network
low complexity
moxa CWE-120
7.5
2023-10-03 CVE-2023-4929 Improper Validation of Integrity Check Value vulnerability in Moxa products
All firmware versions of the NPort 5000 Series are affected by an improper validation of integrity check vulnerability.
network
low complexity
moxa CWE-354
8.8
2023-09-02 CVE-2023-39980 SQL Injection vulnerability in Moxa Mxsecurity 1.0/1.0.1
A vulnerability that allows the unauthorized disclosure of authenticated information has been identified in MXsecurity versions prior to v1.0.1.
network
low complexity
moxa CWE-89
8.1
2023-09-02 CVE-2023-39981 Improper Authentication vulnerability in Moxa Mxsecurity 1.0/1.0.1
A vulnerability that allows for unauthorized access has been discovered in MXsecurity versions prior to v1.0.1.
network
low complexity
moxa CWE-287
7.5
2023-08-17 CVE-2023-34216 Path Traversal vulnerability in Moxa Tn-4900 Firmware and Tn-5900 Firmware
TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command-injection vulnerability.
network
low complexity
moxa CWE-22
8.1
2023-08-17 CVE-2023-34217 Path Traversal vulnerability in Moxa Tn-4900 Firmware and Tn-5900 Firmware
TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command-injection vulnerability.
network
low complexity
moxa CWE-22
8.1
2023-08-17 CVE-2023-33237 Improper Authentication vulnerability in Moxa Tn-5900 Firmware 3.1/3.2/3.3
TN-5900 Series firmware version v3.3 and prior is vulnerable to improper-authentication vulnerability.
network
low complexity
moxa CWE-287
8.8
2023-05-22 CVE-2023-33235 Command Injection vulnerability in Moxa Mxsecurity 1.0
MXsecurity version 1.0 is vulnearble to command injection vulnerability.
network
low complexity
moxa CWE-77
8.8