CVE-2017-16715
7.5
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD
Description
An Information Exposure issue was discovered in Moxa NPort 5110 Version 2.2, NPort 5110 Version 2.4, NPort 5110 Version 2.6, NPort 5110 Version 2.7, NPort 5130 Version 3.7 and prior, and NPort 5150 Version 3.7 and prior. An attacker may be able to exploit a flaw in the handling of Ethernet frame padding that may allow for information exposure.
Affected (6)
Products: Moxa: Nport 5110 Firmware, Nport 5130 Firmware, Nport 5150 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 2.2 |
| Running on/with | Platform Versions |
|---|---|
Moxa Nport 5110 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 3.7 |
| Running on/with | Platform Versions |
|---|---|
Moxa Nport 5130 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 3.7 |
| Running on/with | Platform Versions |
|---|---|
Moxa Nport 5150 | All versions |
References (4)
Source: ics-cert@hq.dhs.gov
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource
Timeline
No history available yet.