Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown

CVE-2024-7695

Disclosure Date: January 29, 2025 (last updated February 23, 2025)
Multiple switches are affected by an out-of-bounds write vulnerability. This vulnerability is caused by insufficient input validation, which allows data to be written to memory outside the bounds of the buffer. Successful exploitation of this vulnerability could result in a denial-of-service attack.
0
Attacker Value
Unknown

CVE-2024-9404

Disclosure Date: December 04, 2024 (last updated February 27, 2025)
This vulnerability could lead to denial-of-service or service crashes. Exploitation of the moxa_cmd service, because of insufficient input validation, allows attackers to disrupt operations. If exposed to public networks, the vulnerability poses a significant remote threat, potentially allowing attackers to shut down affected systems.
0
Attacker Value
Unknown

CVE-2024-9137

Disclosure Date: October 14, 2024 (last updated February 26, 2025)
The affected product lacks an authentication check when sending commands to the server via the Moxa service. This vulnerability allows an attacker to execute specified commands, potentially leading to unauthorized downloads or uploads of configuration files and system compromise.
0
Attacker Value
Unknown

CVE-2016-4514

Disclosure Date: June 19, 2016 (last updated November 25, 2024)
Moxa PT-7728 devices with software 3.4 build 15081113 allow remote authenticated users to change the configuration via vectors involving a local proxy.