TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command injection vulnerability. This vulnerability stems from inadequate input validation in the certificate management function, which could potentially allow malicious users to execute remote code on affected devices.
History

Mon, 28 Oct 2024 06:15:00 +0000

Type Values Removed Values Added
Description TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command injection vulnerability. This vulnerability stems from inadequate input validation in the certificate management function, which could potentially allow malicious users to execute remote code on affected devices. TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command injection vulnerability. This vulnerability stems from inadequate input validation in the certificate management function, which could potentially allow malicious users to execute remote code on affected devices.
Weaknesses CWE-78

Tue, 08 Oct 2024 18:15:00 +0000

Type Values Removed Values Added
First Time appeared Moxa edr-810
Moxa edr-g9010
Moxa edr-g902
Moxa nat-102
CPEs cpe:2.3:a:moxa:edr-g9010:*:*:*:*:*:*:*:*
cpe:2.3:a:moxa:nat-102:*:*:*:*:*:*:*:*
cpe:2.3:h:moxa:edr-810:-:*:*:*:*:*:*:*
cpe:2.3:h:moxa:edr-g902:-:*:*:*:*:*:*:*
Vendors & Products Moxa edr-810
Moxa edr-g9010
Moxa edr-g902
Moxa nat-102
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Moxa

Published: 2023-08-17T02:04:50.789Z

Updated: 2024-10-28T06:03:40.655Z

Reserved: 2023-05-19T02:30:16.483Z

Link: CVE-2023-33238

cve-icon Vulnrichment

Updated: 2024-08-02T15:39:35.932Z

cve-icon NVD

Status : Modified

Published: 2023-08-17T03:15:09.377

Modified: 2024-11-21T08:05:12.860

Link: CVE-2023-33238

cve-icon Redhat

No data.