Vulnerability index

Browse CVEs

91 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Awk 3121 Firmware HIGH 8.8
CVE-2018-10701

An issue was discovered on Moxa AWK-3121 1.14 devices. It provides functionality so that an administrator can run scripts on the device to troublesho…

No fix yet
Fix from $1,950 2019-06-07
Awk 3121 Firmware HIGH 8.8
CVE-2018-10702EPSS 5%

An issue was discovered on Moxa AWK-3121 1.14 devices. It provides functionality so that an administrator can run scripts on the device to troublesho…

No fix yet
Fix from $1,950 2019-06-07
Awk 3121 Firmware HIGH 8.8
CVE-2018-10703

An issue was discovered on Moxa AWK-3121 1.14 devices. It provides functionality so that an administrator can run scripts on the device to troublesho…

No fix yet
Fix from $1,950 2019-06-07
Awk 3121 Firmware HIGH 8.1
CVE-2018-10690

An issue was discovered on Moxa AWK-3121 1.14 devices. The device by default allows HTTP traffic thus providing an insecure communication mechanism f…

No fix yet
Fix from $1,950 2019-06-07
Awk 3121 Firmware HIGH 8.1
CVE-2018-10694

An issue was discovered on Moxa AWK-3121 1.14 devices. The device provides a Wi-Fi connection that is open and does not use any encryption mechanism …

No fix yet
Fix from $1,950 2019-06-07
Awk 3121 Firmware HIGH 7.5
CVE-2018-10691

An issue was discovered on Moxa AWK-3121 1.14 devices. It is intended that an administrator can download /systemlog.log (the system log). However, th…

No fix yet
Fix from $1,950 2019-06-07
Awk 3121 Firmware MEDIUM 6.1
CVE-2018-10692

An issue was discovered on Moxa AWK-3121 1.14 devices. The session cookie "Password508" does not have an HttpOnly flag. This allows an attacker who i…

No fix yet
Fix from $1,600 2019-06-07
Awk 3121 Firmware MEDIUM 6.1
CVE-2018-10700EPSS 38%

An issue was discovered on Moxa AWK-3121 1.19 devices. It provides functionality so that an administrator can change the name of the device. However,…

No fix yet
Fix from $1,600 2019-06-07
Thingspro CRITICAL 9.8
CVE-2018-18393

Password Management Issue in Moxa ThingsPro IIoT Gateway and Device Management Software Solutions version 2.1.

Mitigation only
Fix from $2,300 2018-10-19
Thingspro CRITICAL 9.8
CVE-2018-18394

Sensitive Information Stored in Clear Text in Moxa ThingsPro IIoT Gateway and Device Management Software Solutions version 2.1.

Mitigation only
Fix from $2,300 2018-10-19
Thingspro CRITICAL 9.8
CVE-2018-18395

Hidden Token Access in Moxa ThingsPro IIoT Gateway and Device Management Software Solutions version 2.1.

No fix yet
Fix from $2,300 2018-10-19
Thingspro CRITICAL 9.8
CVE-2018-18396

Remote Code Execution in Moxa ThingsPro IIoT Gateway and Device Management Software Solutions version 2.1.

No fix yet
Fix from $2,300 2018-10-19
Thingspro HIGH 8.8
CVE-2018-18391

User Privilege Escalation in Moxa ThingsPro IIoT Gateway and Device Management Software Solutions version 2.1.

Mitigation only
Fix from $1,950 2018-10-19
Thingspro HIGH 8.8
CVE-2018-18392

Privilege Escalation via Broken Access Control in Moxa ThingsPro IIoT Gateway and Device Management Software Solutions version 2.1.

Mitigation only
Fix from $1,950 2018-10-19
Thingspro HIGH 7.5
CVE-2018-18390

User Enumeration in Moxa ThingsPro IIoT Gateway and Device Management Software Solutions version 2.1.

Mitigation only
Fix from $1,950 2018-10-19
Edr 810 Firmware HIGH 8.8
CVE-2018-16282EPSS 5%

A command injection vulnerability in the web server functionality of Moxa EDR-810 V4.2 build 18041013 allows remote attackers to execute arbitrary OS…

No fix yet
Fix from $1,950 2018-09-20
Nport 5230 Firmware HIGH 7.5
CVE-2018-10632

In Moxa NPort 5210, 5230, and 5232 versions 2.9 build 17030709 and prior, the amount of resources requested by a malicious actor are not restricted, …

Mitigation only
Fix from $1,950 2018-07-24
Edr 810 Firmware HIGH 7.5
CVE-2017-14439

Exploitable denial of service vulnerabilities exists in the Service Agent functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted pack…

No fix yet
Fix from $1,950 2018-05-14
Edr 810 Firmware HIGH 8.8
CVE-2017-12120

An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP P…

No fix yet
Fix from $1,950 2018-05-14
Edr 810 Firmware HIGH 8.8
CVE-2017-12121

An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP P…

No fix yet
Fix from $1,950 2018-05-14
Edr 810 Firmware HIGH 8.8
CVE-2017-12123

An exploitable clear text transmission of password vulnerability exists in the web server and telnet functionality of Moxa EDR-810 V4.1 build 1703031…

No fix yet
Fix from $1,950 2018-05-14
Edr 810 Firmware HIGH 8.8
CVE-2017-12125

An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP P…

No fix yet
Fix from $1,950 2018-05-14
Edr 810 Firmware HIGH 8.8
CVE-2017-12126

An exploitable cross-site request forgery vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially craft…

No fix yet
Fix from $1,950 2018-05-14
Edr 810 Firmware HIGH 8.8
CVE-2017-14432

An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP P…

No fix yet
Fix from $1,950 2018-05-14
Edr 810 Firmware HIGH 8.8
CVE-2017-14433

An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP P…

No fix yet
Fix from $1,950 2018-05-14
Edr 810 Firmware HIGH 8.8
CVE-2017-14434

An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP P…

No fix yet
Fix from $1,950 2018-05-14
Edr 810 Firmware HIGH 8.0
CVE-2017-12129

An exploitable Weak Cryptography for Passwords vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. An attacker …

No fix yet
Fix from $1,950 2018-05-14
Edr 810 Firmware HIGH 7.5
CVE-2017-12128EPSS 43%

An exploitable information disclosure vulnerability exists in the Server Agent functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted…

No fix yet
Fix from $1,950 2018-05-14
Edr 810 Firmware HIGH 7.5
CVE-2017-14435

An exploitable denial of service vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP U…

No fix yet
Fix from $1,950 2018-05-14
Edr 810 Firmware HIGH 7.5
CVE-2017-14436

An exploitable denial of service vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP U…

No fix yet
Fix from $1,950 2018-05-14