Vulnerability index

Browse CVEs

280 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Tn 5900 Firmware HIGH 8.1
CVE-2023-34217

TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command-injection vulnera…

Fix: after 3.3
Fix from $1,950 2023-08-17
Tn 5900 Firmware CRITICAL 9.8
CVE-2023-34215

TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command-injection vulnerability. This vulnerability stems from insufficient inp…

Fix: after 3.3
Fix from $2,300 2023-08-17
Tn 5900 Firmware CRITICAL 9.8
CVE-2023-33238

TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command injection vulnera…

Fix: after 3.3
Fix from $2,300 2023-08-17
Tn 5900 Firmware CRITICAL 9.8
CVE-2023-33239

TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command injection vulnera…

Fix: after 3.3
Fix from $2,300 2023-08-17
Tn 5900 Firmware CRITICAL 9.8
CVE-2023-34213

TN-5900 Series firmware versions v3.3 and prior are vulnerable to command-injection vulnerability. This vulnerability stems from insufficient input v…

Fix: after 3.3
Fix from $2,300 2023-08-17
Tn 5900 Firmware CRITICAL 9.8
CVE-2023-34214

TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command-injection vulnera…

Fix: after 3.3
Fix from $2,300 2023-08-17
Tn 5900 Firmware HIGH 8.8
CVE-2023-33237

TN-5900 Series firmware version v3.3 and prior is vulnerable to improper-authentication vulnerability. This vulnerability arises from inadequate auth…

Fix: after 3.3
Fix from $1,950 2023-08-17
Nport Iaw5000a I\/o Firmware CRITICAL 9.8
CVE-2023-4204

NPort IAW5000A-I/O Series firmware version v2.2 and prior is affected by a hardcoded credential vulnerabilitywhich poses a potential risk to the secu…

Fix: after 2.2
Fix from $2,300 2023-08-16
Tn 5900 Firmware MEDIUM 5.3
CVE-2023-3336

TN-5900 Series version 3.3 and prior versions is vulnearble to user enumeration vulnerability. The vulnerability may allow a remote attacker to deter…

Fix: after 3.3
Fix from $1,600 2023-07-05
Mxsecurity CRITICAL 9.8
CVE-2023-33236

MXsecurity version 1.0 is vulnearble to hardcoded credential vulnerability. This vulnerability has been reported that can be exploited to craft arbit…

Patch available
Fix from $2,300 2023-05-22
Mxsecurity HIGH 8.8
CVE-2023-33235

MXsecurity version 1.0 is vulnearble to command injection vulnerability. This vulnerability has been reported in the SSH CLI program, which can be ex…

Patch available
Fix from $1,950 2023-05-22
Miineport E1 Firmware CRITICAL 9.8
CVE-2023-28697

Moxa MiiNePort E1 has a vulnerability of insufficient access control. An unauthenticated remote user can exploit this vulnerability to perform arbitr…

Mitigation only
Fix from $2,300 2023-04-27
Uc 2101 Lx Firmware MEDIUM 6.8
CVE-2023-1257

An attacker with physical access to the affected Moxa UC Series devices can initiate a restart of the device and gain access to its BIOS. Command lin…

Fix: after 1.5
Fix from $1,600 2023-03-07
Sds 3008 Firmware MEDIUM 5.4
CVE-2022-41312

A stored cross-site scripting vulnerability exists in the web application functionality of Moxa SDS-3008 Series Industrial Ethernet Switch 2.1. A spe…

Fix: after 2.1
Fix from $1,600 2023-02-07
Sds 3008 Firmware MEDIUM 5.4
CVE-2022-41313

A stored cross-site scripting vulnerability exists in the web application functionality of Moxa SDS-3008 Series Industrial Ethernet Switch 2.1. A spe…

Fix: after 2.1
Fix from $1,600 2023-02-07
Sds 3008 Firmware HIGH 7.5
CVE-2022-40224EPSS 65%

A denial of service vulnerability exists in the web server functionality of Moxa SDS-3008 Series Industrial Ethernet Switch 2.1. A specially-crafted …

Fix: after 2.1
Fix from $1,950 2023-02-07
Sds 3008 Firmware HIGH 7.5
CVE-2022-40693

A cleartext transmission vulnerability exists in the web application functionality of Moxa SDS-3008 Series Industrial Ethernet Switch 2.1. A speciall…

Fix: after 2.1
Fix from $1,950 2023-02-07
Sds 3008 Firmware MEDIUM 5.4
CVE-2022-41311

A stored cross-site scripting vulnerability exists in the web application functionality of Moxa SDS-3008 Series Industrial Ethernet Switch 2.1. A spe…

Fix: after 2.1
Fix from $1,600 2023-02-07
Sds 3008 Firmware MEDIUM 5.3
CVE-2022-40691

An information disclosure vulnerability exists in the web application functionality of Moxa SDS-3008 Series Industrial Ethernet Switch 2.1. A special…

Fix: after 2.1
Fix from $1,600 2023-02-07
Uc 8580 T Lx Firmware HIGH 7.6
CVE-2022-3086

Cradlepoint IBR600 NCOS versions 6.5.0.160bc2e and prior are vulnerable to shell escape, which enables local attackers with non-superuser credentia…

Fix: after 1.2
Fix from $1,950 2022-12-02
Uc 2101 Lx Firmware HIGH 7.8
CVE-2022-3088

UC-8100A-ME-T System Image: Versions v1.0 to v1.6, UC-2100 System Image: Versions v1.0 to v1.12, UC-2100-W System Image: Versions v1.0 to v 1.12,&nbs…

Fix: after 1.12
Fix from $1,950 2022-11-28
Nport 5110 Firmware HIGH 8.2
CVE-2022-2044

MOXA NPort 5110: Firmware Versions 2.10 is vulnerable to an out-of-bounds write that may allow an attacker to overwrite values in memory, causing a d…

Mitigation only
Fix from $1,950 2022-08-31
Nport 5110 Firmware HIGH 7.5
CVE-2022-2043

MOXA NPort 5110: Firmware Versions 2.10 is vulnerable to an out-of-bounds write that can cause the device to become unresponsive.

Mitigation only
Fix from $1,950 2022-08-31
Mgate Mb3170i Firmware HIGH 7.4
CVE-2022-27048

A vulnerability has been discovered in Moxa MGate which allows an attacker to perform a man-in-the-middle (MITM) attack on the device. This affects M…

Fix: after 4.2
Fix from $1,950 2022-04-15
Mxview CRITICAL 9.8
CVE-2021-40390

An authentication bypass vulnerability exists in the Web Application functionality of Moxa MXView Series 3.2.4. A specially-crafted HTTP request can …

No fix yet
Fix from $2,300 2022-04-14
Mxview HIGH 7.5
CVE-2021-40392

An information disclosure vulnerability exists in the Web Application functionality of Moxa MXView Series 3.2.4. Network sniffing can lead to a discl…

No fix yet
Fix from $1,950 2022-04-14
Nport Iaw5150a 6i\/o Firmware CRITICAL 9.8
CVE-2021-32974

Improper input validation in the built-in web server in Moxa NPort IAW5000A-I/O series firmware version 2.2 or earlier may allow a remote attacker to…

Fix: after 2.2
Fix from $2,300 2022-04-01
Nport Iaw5150a 6i\/o Firmware CRITICAL 9.8
CVE-2021-32976

Five buffer overflows in the built-in web server in Moxa NPort IAW5000A-I/O series firmware version 2.2 or earlier may allow a remote attacker to ini…

Fix: after 2.2
Fix from $2,300 2022-04-01
Nport Iaw5150a 6i\/o Firmware HIGH 7.5
CVE-2021-32968

Two buffer overflows in the built-in web server in Moxa NPort IAW5000A-I/O Series firmware version 2.2 or earlier may allow a remote attacker to caus…

Fix: after 2.2
Fix from $1,950 2022-04-01
Nport Iaw5150a 6i\/o Firmware HIGH 7.5
CVE-2021-32970

Data can be copied without validation in the built-in web server in Moxa NPort IAW5000A-I/O series firmware version 2.2 or earlier, which may allow a…

Fix: after 2.2
Fix from $1,950 2022-04-01