Moxa
moxa
289 CVEs • 993 products
Products (993)
Click to collapseToggle
Products (993)
Click to collapse
CVEs (289)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
TN-5900 Series version 3.3 and prior versions is vulnearble to user enumeration vulnerability. The vulnerability may allow a remote attacker to determine whether a user is valid during password recovery through the web l...Show more |
MXsecurity version 1.0 is vulnearble to hardcoded credential vulnerability. This vulnerability has been reported that can be exploited to craft arbitrary JWT tokens and subsequently bypass authentication for web-based AP...Show more |
MXsecurity version 1.0 is vulnearble to command injection vulnerability. This vulnerability has been reported in the SSH CLI program, which can be exploited by attackers who have gained authorization privileges. The atta...Show more |
Moxa MiiNePort E1 has a vulnerability of insufficient access control. An unauthenticated remote user can exploit this vulnerability to perform arbitrary system operation or disrupt service. |
1Moxa 54Uc 2101 Lx Firmware Uc 2102 Lx FirmwareUc 2102 T Lx Firmware+51 moreJun 17, 2026 Mar 7, 2023 N/A· v4 6.8 MEDIUM· v3 N/A· v2 An attacker with physical access to the affected Moxa UC Series devices can initiate a restart of the device and gain access to its BIOS. Command line options can then be altered, allowing the attacker to access the term...Show more |
1Moxa 2Sds 3008 T Firmware Sds 3008 FirmwareJun 17, 2026 Feb 7, 2023 N/A· v4 5.4 MEDIUM· v3 N/A· v2 A stored cross-site scripting vulnerability exists in the web application functionality of Moxa SDS-3008 Series Industrial Ethernet Switch 2.1. A specially-crafted HTTP request can lead to arbitrary Javascript execution....Show more |
1Moxa 2Sds 3008 T Firmware Sds 3008 FirmwareJun 17, 2026 Feb 7, 2023 N/A· v4 5.4 MEDIUM· v3 N/A· v2 A stored cross-site scripting vulnerability exists in the web application functionality of Moxa SDS-3008 Series Industrial Ethernet Switch 2.1. A specially-crafted HTTP request can lead to arbitrary Javascript execution....Show more |
1Moxa 2Sds 3008 T Firmware Sds 3008 FirmwareJun 17, 2026 Feb 7, 2023 N/A· v4 5.4 MEDIUM· v3 N/A· v2 A stored cross-site scripting vulnerability exists in the web application functionality of Moxa SDS-3008 Series Industrial Ethernet Switch 2.1. A specially-crafted HTTP request can lead to arbitrary Javascript execution....Show more |
1Moxa 2Sds 3008 T Firmware Sds 3008 FirmwareJun 17, 2026 Feb 7, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 A cleartext transmission vulnerability exists in the web application functionality of Moxa SDS-3008 Series Industrial Ethernet Switch 2.1. A specially-crafted network sniffing can lead to a disclosure of sensitive inform...Show more |
1Moxa 2Sds 3008 T Firmware Sds 3008 FirmwareJun 17, 2026 Feb 7, 2023 N/A· v4 5.3 MEDIUM· v3 N/A· v2 An information disclosure vulnerability exists in the web application functionality of Moxa SDS-3008 Series Industrial Ethernet Switch 2.1. A specially-crafted HTTP request can lead to a disclosure of sensitive informati...Show more |
1Moxa 2Sds 3008 T Firmware Sds 3008 FirmwareJun 17, 2026 Feb 7, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 A denial of service vulnerability exists in the web server functionality of Moxa SDS-3008 Series Industrial Ethernet Switch 2.1. A specially-crafted HTTP message header can lead to denial of service. An attacker can send...Show more |
1Moxa 50Uc 2101 Lx Firmware Uc 2102 Lx FirmwareUc 2104 Lx Firmware+47 moreJun 17, 2026 Dec 2, 2022 N/A· v4 7.6 HIGH· v3 N/A· v2 Cradlepoint IBR600 NCOS versions 6.5.0.160bc2e and prior are vulnerable to shell escape, which enables local attackers with non-superuser credentials to gain full, unrestrictive shell access which may allow an attacke...Show more |
1Moxa 64Aig 301 Ap Azu Lx Firmware Aig 301 Azu Lx FirmwareAig 301 Cn Azu Lx Firmware+61 moreJun 17, 2026 Nov 28, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 UC-8100A-ME-T System Image: Versions v1.0 to v1.6, UC-2100 System Image: Versions v1.0 to v1.12, UC-2100-W System Image: Versions v1.0 to v 1.12, UC-3100 System Image: Versions v1.0 to v1.6, UC-5100 System Imag...Show more |
MOXA NPort 5110: Firmware Versions 2.10 is vulnerable to an out-of-bounds write that may allow an attacker to overwrite values in memory, causing a denial-of-service condition or potentially bricking the device. |
MOXA NPort 5110: Firmware Versions 2.10 is vulnerable to an out-of-bounds write that can cause the device to become unresponsive. |
1Moxa 20Mgate Mb3170 M Sc T Firmware Mgate Mb3170 M Sc FirmwareMgate Mb3170 M St T Firmware+17 moreJun 17, 2026 Apr 15, 2022 N/A· v4 7.4 HIGH· v3 5.8 MEDIUM· v2 A vulnerability has been discovered in Moxa MGate which allows an attacker to perform a man-in-the-middle (MITM) attack on the device. This affects MGate MB3170 Series Firmware Version 4.2 or lower. and MGate MB3270 Seri...Show more |
An information disclosure vulnerability exists in the Web Application functionality of Moxa MXView Series 3.2.4. Network sniffing can lead to a disclosure of sensitive information. An attacker can sniff network traffic t...Show more |
An authentication bypass vulnerability exists in the Web Application functionality of Moxa MXView Series 3.2.4. A specially-crafted HTTP request can lead to unauthorized access. An attacker can send an HTTP request to tr...Show more |
1Moxa 4Nport Iaw5150a 12i/o Firmware Nport Iaw5150a 6i/o FirmwareNport Iaw5250a 12i/o Firmware+1 moreJun 17, 2026 Apr 1, 2022 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Five buffer overflows in the built-in web server in Moxa NPort IAW5000A-I/O series firmware version 2.2 or earlier may allow a remote attacker to initiate a denial-of-service attack and execute arbitrary code. |
1Moxa 4Nport Iaw5150a 12i/o Firmware Nport Iaw5150a 6i/o FirmwareNport Iaw5250a 12i/o Firmware+1 moreJun 17, 2026 Apr 1, 2022 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Improper input validation in the built-in web server in Moxa NPort IAW5000A-I/O series firmware version 2.2 or earlier may allow a remote attacker to execute commands. |