← Back

Moxa

moxa

289 CVEs • 993 products

Products (993)

Click to collapse
Toggle
Mxview
mxview
Mxsecurity
mxsecurity
Softcms
softcms
Thingspro
thingspro

CVEs (289)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Moxa
2Eds 405a Firmware
Eds 408a Firmware
May 6, 2026
Sep 11, 2015
N/A· v4
N/A· v3
6.8 MEDIUM· v2
The GoAhead web server on Moxa EDS-405A and EDS-408A switches with firmware before 3.6 allows remote authenticated users to cause a denial of service (reboot) via a crafted URL.
1Moxa
2Eds 405a Firmware
Eds 408a Firmware
May 6, 2026
Sep 11, 2015
N/A· v4
N/A· v3
8.5 HIGH· v2
The administrative web interface on Moxa EDS-405A and EDS-408A switches with firmware before 3.6 allows remote authenticated users to bypass a read-only protection mechanism by using Firefox with a web-developer plugin.
1Moxa
1Softcms
May 6, 2026
Jun 5, 2015
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Stack-based buffer overflow in the OpenForIPCamTest method in the RTSPVIDEO.rtspvideoCtrl.1 (aka SStreamVideo) ActiveX control in Moxa SoftCMS before 1.3 allows remote attackers to execute arbitrary code via the StrRtspP...Show more
Stack-based buffer overflow in the OpenForIPCamTest method in the RTSPVIDEO.rtspvideoCtrl.1 (aka SStreamVideo) ActiveX control in Moxa SoftCMS before 1.3 allows remote attackers to execute arbitrary code via the StrRtspPath parameter.Show less
1Moxa
1Vport Activex Sdk Plus
May 6, 2026
May 26, 2015
N/A· v4
N/A· v3
7.5 HIGH· v2
Multiple stack-based buffer overflows in Moxa VPort ActiveX SDK Plus before 2.8 allow remote attackers to insert assembly-code lines via vectors involving a regkey (1) set or (2) get command.
1Moxa
5Oncell Gateway Firmware
Oncell Gateway G3111Oncell Gateway G3151+2 more
Apr 29, 2026
Aug 9, 2013
N/A· v4
N/A· v3
7.1 HIGH· v2
Moxa OnCell Gateway G3111, G3151, G3211, and G3251 devices with firmware before 1.4 do not use a sufficient source of entropy for SSH and SSL keys, which makes it easier for remote attackers to obtain access by leveragin...Show more
Moxa OnCell Gateway G3111, G3151, G3211, and G3251 devices with firmware before 1.4 do not use a sufficient source of entropy for SSH and SSL keys, which makes it easier for remote attackers to obtain access by leveraging knowledge of a key from a product installation elsewhere.Show less
1Moxa
1Edr G903 Firmware
Apr 29, 2026
Feb 15, 2013
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Moxa EDR-G903 series routers with firmware before 2.11 have a hardcoded account, which allows remote attackers to obtain unspecified device access via unknown vectors.
1Moxa
2Edr G903
Edr G903 Firmware
Apr 29, 2026
Feb 15, 2013
N/A· v4
N/A· v3
7.6 HIGH· v2
Moxa EDR-G903 series routers with firmware before 2.11 do not use a sufficient source of entropy for (1) SSH and (2) SSL keys, which makes it easier for man-in-the-middle attackers to spoof a device or modify a client-se...Show more
Moxa EDR-G903 series routers with firmware before 2.11 do not use a sufficient source of entropy for (1) SSH and (2) SSL keys, which makes it easier for man-in-the-middle attackers to spoof a device or modify a client-server data stream by leveraging knowledge of a key from a product installation elsewhere.Show less
1Moxa
1Activex Sdk
Apr 29, 2026
Feb 18, 2011
N/A· v4
N/A· v3
10.0 HIGH· v2
Stack-based buffer overflow in a certain ActiveX control in MediaDBPlayback.DLL 2.2.0.5 in the Moxa ActiveX SDK allows remote attackers to execute arbitrary code via a long PlayFileName property value.
1Moxa
2Device Manager
Mdm Tool
Apr 29, 2026
Feb 18, 2011
N/A· v4
N/A· v3
9.3 HIGH· v2
Stack-based buffer overflow in MDMUtil.dll in MDMTool.exe in MDM Tool before 2.3 in Moxa Device Manager allows remote MDM Gateways to execute arbitrary code via crafted data in a session on TCP port 54321.