CVE-2017-14028
7.5
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD
Description
A Resource Exhaustion issue was discovered in Moxa NPort 5110 Version 2.2, NPort 5110 Version 2.4, NPort 5110 Version 2.6, NPort 5110 Version 2.7, NPort 5130 Version 3.7 and prior, and NPort 5150 Version 3.7 and prior. An attacker may be able to exhaust memory resources by sending a large amount of TCP SYN packets.
Affected (6)
Products: Moxa: Nport 5110 Firmware, Nport 5130 Firmware, Nport 5150 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 2.2 |
| Running on/with | Platform Versions |
|---|---|
Moxa Nport 5110 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 3.7 |
| Running on/with | Platform Versions |
|---|---|
Moxa Nport 5130 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 3.7 |
| Running on/with | Platform Versions |
|---|---|
Moxa Nport 5150 | All versions |
References (4)
Source: ics-cert@hq.dhs.gov
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource
Timeline
No history available yet.