Vulnerability index

Browse CVEs

91 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2018-10701 An issue was discovered on Moxa AWK-3121 1.14 devices. It provides functionality so that an administrator can run scripts on the device to troublesho… Awk 3121 Firmware No fix yet Fix from $1,9502019-06-07 HIGH 8.8 CVE-2018-10702EPSS 5% An issue was discovered on Moxa AWK-3121 1.14 devices. It provides functionality so that an administrator can run scripts on the device to troublesho… Awk 3121 Firmware No fix yet Fix from $1,9502019-06-07 HIGH 8.8 CVE-2018-10703 An issue was discovered on Moxa AWK-3121 1.14 devices. It provides functionality so that an administrator can run scripts on the device to troublesho… Awk 3121 Firmware No fix yet Fix from $1,9502019-06-07 HIGH 8.1 CVE-2018-10690 An issue was discovered on Moxa AWK-3121 1.14 devices. The device by default allows HTTP traffic thus providing an insecure communication mechanism f… Awk 3121 Firmware No fix yet Fix from $1,9502019-06-07 HIGH 8.1 CVE-2018-10694 An issue was discovered on Moxa AWK-3121 1.14 devices. The device provides a Wi-Fi connection that is open and does not use any encryption mechanism … Awk 3121 Firmware No fix yet Fix from $1,9502019-06-07 HIGH 7.5 CVE-2018-10691 An issue was discovered on Moxa AWK-3121 1.14 devices. It is intended that an administrator can download /systemlog.log (the system log). However, th… Awk 3121 Firmware No fix yet Fix from $1,9502019-06-07 MEDIUM 6.1 CVE-2018-10692 An issue was discovered on Moxa AWK-3121 1.14 devices. The session cookie "Password508" does not have an HttpOnly flag. This allows an attacker who i… Awk 3121 Firmware No fix yet Fix from $1,6002019-06-07 MEDIUM 6.1 CVE-2018-10700EPSS 38% An issue was discovered on Moxa AWK-3121 1.19 devices. It provides functionality so that an administrator can change the name of the device. However,… Awk 3121 Firmware No fix yet Fix from $1,6002019-06-07 CRITICAL 9.8 CVE-2018-18393 Password Management Issue in Moxa ThingsPro IIoT Gateway and Device Management Software Solutions version 2.1. Thingspro Mitigation only Fix from $2,3002018-10-19 CRITICAL 9.8 CVE-2018-18394 Sensitive Information Stored in Clear Text in Moxa ThingsPro IIoT Gateway and Device Management Software Solutions version 2.1. Thingspro Mitigation only Fix from $2,3002018-10-19 CRITICAL 9.8 CVE-2018-18395 Hidden Token Access in Moxa ThingsPro IIoT Gateway and Device Management Software Solutions version 2.1. Thingspro No fix yet Fix from $2,3002018-10-19 CRITICAL 9.8 CVE-2018-18396 Remote Code Execution in Moxa ThingsPro IIoT Gateway and Device Management Software Solutions version 2.1. Thingspro No fix yet Fix from $2,3002018-10-19 HIGH 8.8 CVE-2018-18391 User Privilege Escalation in Moxa ThingsPro IIoT Gateway and Device Management Software Solutions version 2.1. Thingspro Mitigation only Fix from $1,9502018-10-19 HIGH 8.8 CVE-2018-18392 Privilege Escalation via Broken Access Control in Moxa ThingsPro IIoT Gateway and Device Management Software Solutions version 2.1. Thingspro Mitigation only Fix from $1,9502018-10-19 HIGH 7.5 CVE-2018-18390 User Enumeration in Moxa ThingsPro IIoT Gateway and Device Management Software Solutions version 2.1. Thingspro Mitigation only Fix from $1,9502018-10-19 HIGH 8.8 CVE-2018-16282EPSS 5% A command injection vulnerability in the web server functionality of Moxa EDR-810 V4.2 build 18041013 allows remote attackers to execute arbitrary OS… Edr 810 Firmware No fix yet Fix from $1,9502018-09-20 HIGH 7.5 CVE-2018-10632 In Moxa NPort 5210, 5230, and 5232 versions 2.9 build 17030709 and prior, the amount of resources requested by a malicious actor are not restricted, … Nport 5230 Firmware Mitigation only Fix from $1,9502018-07-24 HIGH 7.5 CVE-2017-14439 Exploitable denial of service vulnerabilities exists in the Service Agent functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted pack… Edr 810 Firmware No fix yet Fix from $1,9502018-05-14 HIGH 8.8 CVE-2017-12120 An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP P… Edr 810 Firmware No fix yet Fix from $1,9502018-05-14 HIGH 8.8 CVE-2017-12121 An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP P… Edr 810 Firmware No fix yet Fix from $1,9502018-05-14 HIGH 8.8 CVE-2017-12123 An exploitable clear text transmission of password vulnerability exists in the web server and telnet functionality of Moxa EDR-810 V4.1 build 1703031… Edr 810 Firmware No fix yet Fix from $1,9502018-05-14 HIGH 8.8 CVE-2017-12125 An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP P… Edr 810 Firmware No fix yet Fix from $1,9502018-05-14 HIGH 8.8 CVE-2017-12126 An exploitable cross-site request forgery vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially craft… Edr 810 Firmware No fix yet Fix from $1,9502018-05-14 HIGH 8.8 CVE-2017-14432 An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP P… Edr 810 Firmware No fix yet Fix from $1,9502018-05-14 HIGH 8.8 CVE-2017-14433 An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP P… Edr 810 Firmware No fix yet Fix from $1,9502018-05-14 HIGH 8.8 CVE-2017-14434 An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP P… Edr 810 Firmware No fix yet Fix from $1,9502018-05-14 HIGH 8.0 CVE-2017-12129 An exploitable Weak Cryptography for Passwords vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. An attacker … Edr 810 Firmware No fix yet Fix from $1,9502018-05-14 HIGH 7.5 CVE-2017-12128EPSS 43% An exploitable information disclosure vulnerability exists in the Server Agent functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted… Edr 810 Firmware No fix yet Fix from $1,9502018-05-14 HIGH 7.5 CVE-2017-14435 An exploitable denial of service vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP U… Edr 810 Firmware No fix yet Fix from $1,9502018-05-14 HIGH 7.5 CVE-2017-14436 An exploitable denial of service vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP U… Edr 810 Firmware No fix yet Fix from $1,9502018-05-14