Show filters
296 Total Results
Displaying 101-110 of 296
Sort by:
Attacker Value
Unknown

CVE-2020-25194

Disclosure Date: October 13, 2020 (last updated February 22, 2025)
The built-in WEB server for MOXA NPort IAW5000A-I/O firmware version 2.1 or lower has improper privilege management, which may allow an attacker with user privileges to perform requests with administrative privileges.
Attacker Value
Unknown

CVE-2020-25190

Disclosure Date: October 13, 2020 (last updated February 22, 2025)
The built-in WEB server for MOXA NPort IAW5000A-I/O firmware version 2.1 or lower stores and transmits the credentials of third-party services in cleartext.
Attacker Value
Unknown

CVE-2020-12117

Disclosure Date: May 01, 2020 (last updated February 21, 2025)
Moxa Service in Moxa NPort 5150A firmware version 1.5 and earlier allows attackers to obtain sensitive configuration values via a crafted packet to UDP port 4800. NOTE: Moxa Service is an unauthenticated service that runs upon a first-time installation but can be disabled without ill effect.
Attacker Value
Unknown

CVE-2020-6999

Disclosure Date: March 26, 2020 (last updated February 21, 2025)
In Moxa EDS-G516E Series firmware, Version 5.2 or lower, some of the parameters in the setting pages do not ensure text is the correct size for its buffer.
Attacker Value
Unknown

CVE-2020-6991

Disclosure Date: March 24, 2020 (last updated February 21, 2025)
In Moxa EDS-G516E Series firmware, Version 5.2 or lower, weak password requirements may allow an attacker to gain access using brute force.
Attacker Value
Unknown

CVE-2020-6997

Disclosure Date: March 24, 2020 (last updated February 21, 2025)
In Moxa EDS-G516E Series firmware, Version 5.2 or lower, sensitive information is transmitted over some web applications in cleartext.
Attacker Value
Unknown

CVE-2020-7007

Disclosure Date: March 24, 2020 (last updated February 21, 2025)
In Moxa EDS-G516E Series firmware, Version 5.2 or lower, the attacker may execute arbitrary codes or target the device, causing it to go out of service.
Attacker Value
Unknown

CVE-2020-6981

Disclosure Date: March 24, 2020 (last updated February 21, 2025)
In Moxa EDS-G516E Series firmware, Version 5.2 or lower, an attacker may gain access to the system without proper authentication.
Attacker Value
Unknown

CVE-2020-6979

Disclosure Date: March 24, 2020 (last updated February 21, 2025)
In Moxa EDS-G516E Series firmware, Version 5.2 or lower, the affected products use a hard-coded cryptographic key, increasing the possibility that confidential data can be recovered.
Attacker Value
Unknown

CVE-2020-7001

Disclosure Date: March 24, 2020 (last updated February 21, 2025)
In Moxa EDS-G516E Series firmware, Version 5.2 or lower, the affected products use a weak cryptographic algorithm, which may allow confidential information to be disclosed.