Vulnerability index

Browse CVEs

280 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Iologik E1200 Series Firmware HIGH 8.1
CVE-2016-8372

An issue was discovered in Moxa ioLogik E1210, firmware Version V2.4 and prior, ioLogik E1211, firmware Version V2.3 and prior, ioLogik E1212, firmwa…

Fix: after 3.13
Fix from $1,950 2017-02-13
Iologik E1200 Series Firmware HIGH 8.1
CVE-2016-8379

An issue was discovered in Moxa ioLogik E1210, firmware Version V2.4 and prior, ioLogik E1211, firmware Version V2.3 and prior, ioLogik E1212, firmwa…

Fix: after 3.13
Fix from $1,950 2017-02-13
Dacenter HIGH 7.8
CVE-2016-9356

An issue was discovered in Moxa DACenter Versions 1.4 and older. The application may suffer from an unquoted search path issue.

Fix: after 1.4
Fix from $1,950 2017-02-13
Softcms HIGH 7.5
CVE-2016-9332EPSS 8%

An issue was discovered in Moxa SoftCMS versions prior to Version 1.6. Moxa SoftCMS Webserver does not properly validate input. An attacker could pro…

Fix: after 1.5
Fix from $1,950 2017-02-13
Miineport E1 Firmware HIGH 7.5
CVE-2016-9344

An issue was discovered in Moxa MiiNePort E1 versions prior to 1.8, E2 versions prior to 1.4, and E3 versions prior to 1.1. An attacker may be able t…

Fix: after 1.7
Fix from $1,950 2017-02-13
Oncellg3470a Lte Firmware MEDIUM 6.5
CVE-2016-8362

An issue was discovered in Moxa OnCell OnCellG3470A-LTE, AWK-1131A/3131A/4131A Series, AWK-3191 Series, AWK-5232/6232 Series, AWK-1121/1127 Series, W…

Fix: after 10-31-2016
Fix from $1,600 2017-02-13
Dacenter MEDIUM 5.5
CVE-2016-9354

An issue was discovered in Moxa DACenter Versions 1.4 and older. A specially crafted project file may cause the program to crash because of Uncontrol…

Fix: after 1.4
Fix from $1,600 2017-02-13
Miineport E1 Firmware MEDIUM 5.3
CVE-2016-9346

An issue was discovered in Moxa MiiNePort E1 versions prior to 1.8, E2 versions prior to 1.4, and E3 versions prior to 1.1. Configuration data are st…

Fix: after 1.7
Fix from $1,600 2017-02-13
Softcms HIGH 8.1
CVE-2016-8360

An issue was discovered in Moxa SoftCMS versions prior to Version 1.6. A specially crafted URL request sent to the SoftCMS ASP Webserver can cause a …

Fix: after 1.5
Fix from $1,950 2017-02-13
Edr 810 Firmware HIGH 7.5
CVE-2016-8346

An issue was discovered in Moxa EDR-810 Industrial Secure Router. By accessing a specific uniform resource locator (URL) on the web server, a malicio…

Fix: after 3.12
Fix from $1,950 2017-02-13
Iologik E1200 Series Firmware MEDIUM 6.3
CVE-2016-8350

An issue was discovered in Moxa ioLogik E1210, firmware Version V2.4 and prior, ioLogik E1211, firmware Version V2.3 and prior, ioLogik E1212, firmwa…

Fix: after 3.13
Fix from $1,600 2017-02-13
Iologik E1200 Series Firmware MEDIUM 6.1
CVE-2016-8359

An issue was discovered in Moxa ioLogik E1210, firmware Version V2.4 and prior, ioLogik E1211, firmware Version V2.3 and prior, ioLogik E1212, firmwa…

Fix: after 3.13
Fix from $1,600 2017-02-13
Active Opc Server HIGH 8.8
CVE-2016-5793

Unquoted Windows search path vulnerability in Moxa Active OPC Server before 2.4.19 allows local users to gain privileges via a Trojan horse executabl…

Fix: after 2.4.18
Fix from $1,950 2016-09-24
Oncell G3001 Firmware CRITICAL 9.8
CVE-2016-5799

Moxa OnCell G3100V2 devices before 2.8 and G3111, G3151, G3211, and G3251 devices before 1.7 do not properly restrict authentication attempts, which …

Fix: after 2.7
Fix from $2,300 2016-08-24
Softcms CRITICAL 9.8
CVE-2016-5792

SQL injection vulnerability in Moxa SoftCMS before 1.5 allows remote attackers to execute arbitrary SQL commands via unspecified fields.

Fix: after 1.4
Fix from $2,300 2016-08-08
Mgate Mb3180 Firmware CRITICAL 9.8
CVE-2016-5804

Moxa MGate MB3180 before 1.8, MGate MB3280 before 2.7, MGate MB3480 before 2.6, MGate MB3170 before 2.5, and MGate MB3270 before 2.7 use weak encrypt…

Fix: 1.8 / 2.5+
Fix from $2,300 2016-07-15
Device Server Web Console 5232 N Firmware CRITICAL 9.8
CVE-2016-4503

Moxa Device Server Web Console 5232-N allows remote attackers to bypass authentication, and consequently modify settings and data, via vectors relate…

Mitigation only
Fix from $2,300 2016-07-12
Pt 7728 HIGH 7.7
CVE-2016-4514

Moxa PT-7728 devices with software 3.4 build 15081113 allow remote authenticated users to change the configuration via vectors involving a local prox…

Mitigation only
Fix from $1,950 2016-06-19
Uc 7408 Lx Plus MEDIUM 5.8
CVE-2016-4500

Moxa UC-7408 LX-Plus devices allow remote authenticated users to write to the firmware, and consequently render a device unusable, by leveraging root…

Mitigation only
Fix from $1,600 2016-06-01
Miineport E2 1242 Firmware HIGH 7.5
CVE-2016-2295

Moxa MiiNePort_E1_4641 devices with firmware 1.1.10 Build 09120714, MiiNePort_E1_7080 devices with firmware 1.1.10 Build 09120714, MiiNePort_E2_1242 …

Mitigation only
Fix from $1,950 2016-05-31
Miineport E2 1242 Firmware HIGH 7.5
CVE-2016-2286

Moxa MiiNePort_E1_4641 devices with firmware 1.1.10 Build 09120714, MiiNePort_E1_7080 devices with firmware 1.1.10 Build 09120714, MiiNePort_E2_1242 …

Mitigation only
Fix from $1,950 2016-05-31
Miineport E2 1242 Firmware HIGH 8.8
CVE-2016-2285

Cross-site request forgery (CSRF) vulnerability on Moxa MiiNePort_E1_4641 devices with firmware 1.1.10 Build 09120714, MiiNePort_E1_7080 devices with…

Mitigation only
Fix from $1,950 2016-05-31
Edr G903 Firmware HIGH 7.5
CVE-2016-0879

Moxa Secure Router EDR-G903 devices before 3.4.12 do not delete copies of configuration and log files after completing the import function, which all…

Fix: 3.4.12+
Fix from $1,950 2016-05-31
Edr G903 Firmware HIGH 7.5
CVE-2016-0878

Moxa Secure Router EDR-G903 devices before 3.4.12 allow remote attackers to cause a denial of service (cold start) by sending two crafted ping reques…

Fix: 3.4.12+
Fix from $1,950 2016-05-31
Edr G903 Firmware HIGH 7.5
CVE-2016-0877

Memory leak on Moxa Secure Router EDR-G903 devices before 3.4.12 allows remote attackers to cause a denial of service (memory consumption) by executi…

Fix: 3.4.12+
Fix from $1,950 2016-05-31
Edr G903 Firmware HIGH 7.5
CVE-2016-0876

Moxa Secure Router EDR-G903 devices before 3.4.12 allow remote attackers to discover cleartext passwords by reading a configuration file.

Fix: 3.4.12+
Fix from $1,950 2016-05-31
Edr G903 Firmware HIGH 7.5
CVE-2016-0875

Moxa Secure Router EDR-G903 devices before 3.4.12 allow remote attackers to read configuration and log files via a crafted URL.

Fix: 3.4.12+
Fix from $1,950 2016-05-31
Ioadmin Firmware MEDIUM 5.3
CVE-2016-2283

Moxa ioLogik E2200 devices before 3.12 and ioAdmin Configuration Utility before 3.18 do not properly encrypt data, which makes it easier for remote a…

Fix: after 3.17
Fix from $1,600 2016-03-04
Ioadmin Firmware MEDIUM 5.3
CVE-2016-2282

Moxa ioLogik E2200 devices before 3.12 and ioAdmin Configuration Utility before 3.18 do not properly encrypt credentials, which makes it easier for r…

Fix: after 3.17
Fix from $1,600 2016-03-04
Oncell Central Manager HIGH 8.3
CVE-2015-6481

The login function in the RequestController class in Moxa OnCell Central Manager before 2.2 has a hardcoded root password, which allows remote attack…

Fix: after 2.0
Fix from $1,950 2015-12-21