Show filters
296 Total Results
Displaying 61-70 of 296
Sort by:
Attacker Value
Unknown

CVE-2022-3088

Disclosure Date: November 22, 2022 (last updated October 08, 2023)
UC-8100A-ME-T System Image: Versions v1.0 to v1.6, UC-2100 System Image: Versions v1.0 to v1.12, UC-2100-W System Image: Versions v1.0 to v 1.12, UC-3100 System Image: Versions v1.0 to v1.6, UC-5100 System Image: Versions v1.0 to v1.4, UC-8100 System Image: Versions v3.0 to v3.5, UC-8100-ME-T System Image: Versions v3.0 and v3.1, UC-8200 System Image: v1.0 to v1.5, AIG-300 System Image: v1.0 to v1.4, UC-8410A with Debian 9 System Image: Versions v4.0.2 and v4.1.2, UC-8580 with Debian 9 System Image: Versions v2.0 and v2.1, UC-8540 with Debian 9 System Image: Versions v2.0 and v2.1, and DA-662C-16-LX (GLB) System Image: Versions v1.0.2 to v1.1.2 of Moxa's ARM-based computers have an execution with unnecessary privileges vulnerability, which could allow an attacker with user-level privileges to gain root privileges.
Attacker Value
Unknown

CVE-2022-2044

Disclosure Date: July 26, 2022 (last updated October 08, 2023)
MOXA NPort 5110: Firmware Versions 2.10 is vulnerable to an out-of-bounds write that may allow an attacker to overwrite values in memory, causing a denial-of-service condition or potentially bricking the device.
Attacker Value
Unknown

CVE-2022-2043

Disclosure Date: July 26, 2022 (last updated October 08, 2023)
MOXA NPort 5110: Firmware Versions 2.10 is vulnerable to an out-of-bounds write that can cause the device to become unresponsive.
Attacker Value
Unknown

CVE-2022-27048

Disclosure Date: April 15, 2022 (last updated February 23, 2025)
A vulnerability has been discovered in Moxa MGate which allows an attacker to perform a man-in-the-middle (MITM) attack on the device. This affects MGate MB3170 Series Firmware Version 4.2 or lower. and MGate MB3270 Series Firmware Version 4.2 or lower. and MGate MB3280 Series Firmware Version 4.1 or lower. and MGate MB3480 Series Firmware Version 3.2 or lower.
Attacker Value
Unknown

CVE-2021-32976

Disclosure Date: April 01, 2022 (last updated February 23, 2025)
Five buffer overflows in the built-in web server in Moxa NPort IAW5000A-I/O series firmware version 2.2 or earlier may allow a remote attacker to initiate a denial-of-service attack and execute arbitrary code.
Attacker Value
Unknown

CVE-2021-32974

Disclosure Date: April 01, 2022 (last updated February 23, 2025)
Improper input validation in the built-in web server in Moxa NPort IAW5000A-I/O series firmware version 2.2 or earlier may allow a remote attacker to execute commands.
Attacker Value
Unknown

CVE-2021-32970

Disclosure Date: April 01, 2022 (last updated February 23, 2025)
Data can be copied without validation in the built-in web server in Moxa NPort IAW5000A-I/O series firmware version 2.2 or earlier, which may allow a remote attacker to cause denial-of-service conditions.
Attacker Value
Unknown

CVE-2021-32968

Disclosure Date: April 01, 2022 (last updated February 23, 2025)
Two buffer overflows in the built-in web server in Moxa NPort IAW5000A-I/O Series firmware version 2.2 or earlier may allow a remote attacker to cause a denial-of-service condition.
Attacker Value
Unknown

CVE-2021-46082

Disclosure Date: February 18, 2022 (last updated February 23, 2025)
Moxa TN-5900 v3.1 series routers, MGate 5109 v2.2 series protocol gateways, and MGate 5101-PBM-MN v2.1 series protocol gateways were discovered to contain a memory leak which allows attackers to cause a Denial of Service (DoS) via crafted packets.
Attacker Value
Unknown

CVE-2021-40390

Disclosure Date: February 11, 2022 (last updated February 23, 2025)
An authentication bypass vulnerability exists in the Web Application functionality of Moxa MXView Series 3.2.4. A specially-crafted HTTP request can lead to unauthorized access. An attacker can send an HTTP request to trigger this vulnerability.