CVE-2022-27048
7.4
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N
Exploitability: 2.2 / Impact: 5.2
Source: NVD
Description
A vulnerability has been discovered in Moxa MGate which allows an attacker to perform a man-in-the-middle (MITM) attack on the device. This affects MGate MB3170 Series Firmware Version 4.2 or lower. and MGate MB3270 Series Firmware Version 4.2 or lower. and MGate MB3280 Series Firmware Version 4.1 or lower. and MGate MB3480 Series Firmware Version 3.2 or lower.
Affected (20)
Products: Moxa: Mgate Mb3170i Firmware, Mgate Mb3170i T Firmware, Mgate Mb3170 M St Firmware, Mgate Mb3170 M Sc T Firmware, Mgate Mb3170 Firmware, Mgate Mb3170 T Firmware, Mgate Mb3170 M Sc Firmware, Mgate Mb3170i S Sc Firmware, Mgate Mb3270i Firmware, Mgate Mb3270i T Firmware, Mgate Mb3170i M Sc Firmware, Mgate Mb3170 S Sc T Firmware, Mgate Mb3170i M Sc T Firmware, Mgate Mb3270 Firmware, Mgate Mb3270 T Firmware, Mgate Mb3170 S Sc Firmware, Mgate Mb3170 M St T Firmware, Mgate Mb3170i S Sc T Firmware, Mgate Mb3280 Firmware, Mgate Mb3480 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 4.2 |
| Running on/with | Platform Versions |
|---|---|
Moxa Mgate Mb3170i | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 4.2 |
| Running on/with | Platform Versions |
|---|---|
Moxa Mgate Mb3170i T | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 4.2 |
| Running on/with | Platform Versions |
|---|---|
Moxa Mgate Mb3170 M St | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 4.2 |
| Running on/with | Platform Versions |
|---|---|
Moxa Mgate Mb3170 M Sc T | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 4.2 |
| Running on/with | Platform Versions |
|---|---|
Moxa Mgate Mb3170 | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 4.2 |
| Running on/with | Platform Versions |
|---|---|
Moxa Mgate Mb3170 T | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 4.2 |
| Running on/with | Platform Versions |
|---|---|
Moxa Mgate Mb3170 M Sc | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 4.2 |
| Running on/with | Platform Versions |
|---|---|
Moxa Mgate Mb3170i S Sc | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 4.2 |
| Running on/with | Platform Versions |
|---|---|
Moxa Mgate Mb3270i | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 4.2 |
| Running on/with | Platform Versions |
|---|---|
Moxa Mgate Mb3270i T | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 4.2 |
| Running on/with | Platform Versions |
|---|---|
Moxa Mgate Mb3170i M Sc | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 4.2 |
| Running on/with | Platform Versions |
|---|---|
Moxa Mgate Mb3170 S Sc T | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 4.2 |
| Running on/with | Platform Versions |
|---|---|
Moxa Mgate Mb3170i M Sc T | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 4.2 |
| Running on/with | Platform Versions |
|---|---|
Moxa Mgate Mb3270 | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 4.2 |
| Running on/with | Platform Versions |
|---|---|
Moxa Mgate Mb3270 T | All versions |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 4.2 |
| Running on/with | Platform Versions |
|---|---|
Moxa Mgate Mb3170 S Sc | All versions |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 4.2 |
| Running on/with | Platform Versions |
|---|---|
Moxa Mgate Mb3170 M St T | All versions |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 4.2 |
| Running on/with | Platform Versions |
|---|---|
Moxa Mgate Mb3170i S Sc T | All versions |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 4.1 |
| Running on/with | Platform Versions |
|---|---|
Moxa Mgate Mb3280 | All versions |
Configuration T
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 3.2 |
| Running on/with | Platform Versions |
|---|---|
Moxa Mgate Mb3480 | All versions |
References (2)
Source: cve@mitre.org
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.