Moxa
moxa
289 CVEs • 993 products
Products (993)
Click to collapseToggle
Products (993)
Click to collapse
CVEs (289)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Moxa 35Uc 1222a Firmware Uc 2222a T Ap FirmwareUc 2222a T Eu Firmware+32 moreJun 17, 2026 Feb 5, 2026 7.0 HIGH· v4 6.8 MEDIUM· v3 N/A· v2 Moxa Arm-based industrial computers running Moxa Industrial Linux Secure use a device-unique bootloader password provided on the device. An attacker with physical access to the device could use this information to access...Show more |
1Moxa 35Uc 1222a Firmware Uc 2222a T Ap FirmwareUc 2222a T Eu Firmware+32 moreJun 17, 2026 Feb 5, 2026 7.0 HIGH· v4 6.8 MEDIUM· v3 N/A· v2 A physical attack vulnerability exists in certain Moxa industrial computers using TPM-backed LUKS full-disk encryption on Moxa Industrial Linux 3, where the discrete TPM is connected to the CPU via an SPI bus. Exploitati...Show more |
MXsecurity software versions v1.1.0 and prior are vulnerable because of the use of hard-coded credentials. This vulnerability could allow an attacker to tamper with sensitive data. |
The lack of access restriction to a resource from unauthorized users makes MXsecurity software versions v1.1.0 and prior vulnerable. By acquiring a valid authenticator, an attacker can pose as an authorized user and succ...Show more |
This vulnerability occurs when an attacker exploits a race condition between the time a file is checked and the time it is used (TOCTOU). By exploiting this race condition, an attacker can write arbitrary files to the sy...Show more |
The vulnerability allows an attacker to craft MQTT messages that include relative path traversal sequences, enabling them to read arbitrary files on the system. This could lead to the disclosure of sensitive information,...Show more |
1Moxa 2Mxview One Mxview One Central ManagerJun 17, 2026 Sep 21, 2024 6.8 MEDIUM· v4 7.1 HIGH· v3 N/A· v2 The configuration file stores credentials in cleartext. An attacker with local access rights can read or modify the configuration file, potentially resulting in the service being abused due to sensitive information expos...Show more |
1Moxa 4Oncell G3470a Lte Eu T Firmware Oncell G3470a Lte Eu FirmwareOncell G3470a Lte Us T Firmware+1 moreJun 17, 2026 Jun 25, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 OnCell G3470A-LTE Series firmware versions v1.7.7 and prior have been identified as vulnerable due to accepting a format string from an external source as an argument. An attacker could modify an externally controlled fo...Show more |
1Moxa 4Oncell G3470a Lte Eu T Firmware Oncell G3470a Lte Eu FirmwareOncell G3470a Lte Us T Firmware+1 moreJun 17, 2026 Jun 25, 2024 N/A· v4 8.2 HIGH· v3 N/A· v2 OnCell G3470A-LTE Series firmware versions v1.7.7 and prior have been identified as vulnerable due to missing bounds checking on buffer operations. An attacker could write past the boundaries of allocated buffer regions...Show more |
1Moxa 4Oncell G3470a Lte Eu T Firmware Oncell G3470a Lte Eu FirmwareOncell G3470a Lte Us T Firmware+1 moreJun 17, 2026 Jun 25, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 OnCell G3470A-LTE Series firmware versions v1.7.7 and prior have been identified as vulnerable due to a lack of neutralized inputs in IPSec configuration. An attacker could modify the intended commands sent to target fun...Show more |
1Moxa 4Oncell G3470a Lte Eu T Firmware Oncell G3470a Lte Eu FirmwareOncell G3470a Lte Us T Firmware+1 moreJun 17, 2026 Jun 25, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 OnCell G3470A-LTE Series firmware versions v1.7.7 and prior have been identified as vulnerable due to a lack of neutralized inputs in the web key upload function. An attacker could modify the intended commands sent to ta...Show more |
1Moxa 4Nport W2150a T Firmware Nport W2150a FirmwareNport W2250a T Firmware+1 moreJun 17, 2026 Mar 6, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 A stack-based buffer overflow in the built-in web server in Moxa NPort W2150A/W2250A Series firmware version 2.3 and prior allows a remote attacker to exploit the vulnerability by sending crafted payload to the web servi...Show more |
1Moxa 7Eds 4008 Firmware Eds 4009 FirmwareEds 4012 Firmware+4 moreJun 17, 2026 Feb 26, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 The EDS-4000/G4000 Series prior to version 3.2 includes IP forwarding capabilities that users cannot deactivate. An attacker may be able to send requests to the product and have it forwarded to the target. An attacker ca...Show more |
A vulnerability has been identified in OnCell G3150A-LTE Series firmware versions v1.3 and prior. The vulnerability results from lack of protection for sensitive information during transmission. An attacker eavesdropping...Show more |
A clickjacking vulnerability has been identified in OnCell G3150A-LTE Series firmware versions v1.3 and prior. This vulnerability is caused by incorrectly restricts frame objects, which can lead to user confusion about...Show more |
1Moxa 10Iologik E1210 Firmware Iologik E1211 FirmwareIologik E1212 Firmware+7 moreJun 17, 2026 Dec 23, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A weak cryptographic algorithm vulnerability has been identified in ioLogik E1200 Series firmware versions v3.3 and prior. This vulnerability can help an attacker compromise the confidentiality of sensitive data. This vu...Show more |
1Moxa 10Iologik E1210 Firmware Iologik E1211 FirmwareIologik E1212 Firmware+7 moreJun 17, 2026 Dec 23, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 A Cross-Site Request Forgery (CSRF) vulnerability has been identified in ioLogik E1200 Series firmware versions v3.3 and prior. An attacker can exploit this vulnerability to trick a client into making an unintentional re...Show more |
A vulnerability has been identified in PT-G503 Series firmware versions prior to v5.2, where the Secure attribute for sensitive cookies in HTTPS sessions is not set, which could cause the cookie to be transmitted in plai...Show more |
A vulnerability has been identified in PT-G503 Series versions prior to v5.2, where the session cookies attribute is not set properly in the affected application. The vulnerability may lead to security risks, potentially...Show more |
1Moxa 27Nport 6150 T Firmware Nport 6150 FirmwareNport 6250 M Sc T Firmware+24 moreJun 17, 2026 Nov 1, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 A vulnerability has been identified in NPort 6000 Series, making the authentication mechanism vulnerable. This vulnerability arises from the incorrect implementation of sensitive information protection, potentially allow...Show more |