TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command-injection vulnerability. This vulnerability stems from insufficient input validation in the certificate-generation function, which could potentially allow malicious users to execute remote code on affected devices.
Metrics
Affected Vendors & Products
References
History
Mon, 28 Oct 2024 06:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command-injection vulnerability. This vulnerability stems from insufficient input validation in the certificate-generation function, which could potentially allow malicious users to execute remote code on affected devices. | TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command-injection vulnerability. This vulnerability stems from insufficient input validation in the certificate-generation function, which could potentially allow malicious users to execute remote code on affected devices. |
Weaknesses | CWE-78 |
Tue, 08 Oct 2024 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Moxa edr-810
Moxa edr-g902 Moxa edr-g903 |
|
CPEs | cpe:2.3:h:moxa:edr-810:-:*:*:*:*:*:*:* cpe:2.3:h:moxa:edr-g902:-:*:*:*:*:*:*:* cpe:2.3:h:moxa:edr-g903:-:*:*:*:*:*:*:* |
|
Vendors & Products |
Moxa edr-810
Moxa edr-g902 Moxa edr-g903 |
|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: Moxa
Published: 2023-08-17T02:26:05.428Z
Updated: 2024-10-28T06:07:21.645Z
Reserved: 2023-05-31T08:58:06.149Z
Link: CVE-2023-34214
Vulnrichment
Updated: 2024-08-02T16:01:54.270Z
NVD
Status : Modified
Published: 2023-08-17T03:15:09.747
Modified: 2024-11-21T08:06:47.010
Link: CVE-2023-34214
Redhat
No data.