Skip to main content

Vendor archive

moxa CVEs

Beta · best-effort

289 CVEs tagged to vendor moxa63 Critical, 161 High, 60 Medium, 5 Low, 0 Unrated.

CVE-2017-7455

Published Apr 14, 2017

Moxa MXView 2.8 allows remote attackers to read web server's private key file, no access control.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2016-8727

Published Apr 13, 2017

An exploitable information disclosure vulnerability exists in the Web Application functionality of Moxa AWK-3131A Wireless Access Point. Retrieving a series of URLs without authen…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2016-8726

Published Apr 13, 2017

An exploitable null pointer dereference vulnerability exists in the Web Application /forms/web_runScript iw_filename functionality of Moxa AWK-3131A Wireless Access Point running…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2016-8725

Published Apr 13, 2017

An exploitable information disclosure vulnerability exists in the Web Application functionality of the Moxa AWK-3131A wireless access point running firmware 1.1. Retrieving a spec…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-8724

Published Apr 13, 2017

An exploitable information disclosure vulnerability exists in the serviceAgent functionality of Moxa AWK-3131A Wireless Access Point running firmware 1.1. A specially crafted TCP…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-8723

Published Apr 13, 2017

An exploitable null pointer dereference exists in the Web Application functionality of Moxa AWK-3131A Wireless Access Point running firmware 1.1. Any HTTP GET request not preceded…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2016-8722

Published Apr 13, 2017

An exploitable Information Disclosure vulnerability exists in the Web Application functionality of Moxa AWK-3131A Series Industrial IEEE 802.11a/b/g/n wireless AP/bridge/client. R…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-8720

Published Apr 13, 2017

An exploitable HTTP Header Injection vulnerability exists in the Web Application functionality of the Moxa AWK-3131A Wireless Access Point running firmware 1.1. A specially crafte…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-8712

Published Apr 13, 2017

An exploitable nonce reuse vulnerability exists in the Web Application functionality of Moxa AWK-3131A Wireless AP running firmware 1.1. The device uses one nonce for all session…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2016-8719

Published Apr 12, 2017

An exploitable reflected Cross-Site Scripting vulnerability exists in the Web Application functionality of Moxa AWK-3131A Wireless Access Point running firmware 1.1. Specially cra…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-8718

Published Apr 12, 2017

An exploitable Cross-Site Request Forgery vulnerability exists in the Web Application functionality of Moxa AWK-3131A Wireless Access Point running firmware 1.1. A specially craft…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2016-8716

Published Apr 12, 2017

An exploitable Cleartext Transmission of Password vulnerability exists in the Web Application functionality of Moxa AWK-3131A Wireless Access Point running firmware 1.1. The Chang…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2016-9356

Published Feb 13, 2017

An issue was discovered in Moxa DACenter Versions 1.4 and older. The application may suffer from an unquoted search path issue.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2016-9354

Published Feb 13, 2017

An issue was discovered in Moxa DACenter Versions 1.4 and older. A specially crafted project file may cause the program to crash because of Uncontrolled Resource Consumption.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-9333

Published Feb 13, 2017

An issue was discovered in Moxa SoftCMS versions prior to Version 1.6. The SoftCMS Application does not properly sanitize input that may allow a remote attacker access to SoftCMS…

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort
Showing 226-250 of 289 CVEsPage 10 of 12