Moxa / Mxview
13 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2021-40392 | An information disclosure vulnerability exists in the Web Application functionality of Moxa MXView Series 3.2.4. Network sniffing can lead to a disclosure of s… | HIGH | 7.5 | Apr 14, 2022 |
| CVE-2021-40390 | An authentication bypass vulnerability exists in the Web Application functionality of Moxa MXView Series 3.2.4. A specially-crafted HTTP request can lead to un… | CRITICAL | 9.8 | Apr 14, 2022 |
| CVE-2021-38460 | Moxa MXview Network Management Software | HIGH | 7.5 | Oct 12, 2021 |
| CVE-2021-38458 | Moxa MXview Network Management Software | CRITICAL | 9.8 | Oct 12, 2021 |
| CVE-2021-38454 | Moxa MXview Network Management Software | CRITICAL | 10.0 | Oct 12, 2021 |
| CVE-2021-38456 | Moxa MXview Network Management Software | CRITICAL | 9.8 | Oct 12, 2021 |
| CVE-2021-38452 | Moxa MXview Network Management Software | CRITICAL | 9.1 | Oct 12, 2021 |
| CVE-2020-13537 | An exploitable local privilege elevation vulnerability exists in the file system permissions of Moxa MXView series 3.1.8 installation. Depending on the vector… | HIGH | 7.8 | Nov 5, 2020 |
| CVE-2020-13536 | An exploitable local privilege elevation vulnerability exists in the file system permissions of Moxa MXView series 3.1.8 installation. Depending on the vector… | HIGH | 7.8 | Nov 5, 2020 |
| CVE-2018-7506 | The private key of the web server in Moxa MXview versions 2.8 and prior is able to be read and accessed via an HTTP GET request, which may allow a remote attac… | HIGH | 7.5 | Apr 6, 2018 |
| CVE-2017-14030 | An issue was discovered in Moxa MXview v2.8 and prior. The unquoted service path escalation vulnerability could allow an authorized user with file access to es… | HIGH | 7.8 | Jan 12, 2018 |
| CVE-2017-7456 | Moxa MXView 2.8 allows remote attackers to cause a Denial of Service by sending overly long junk payload for the MXView client login credentials. | HIGH | 7.5 | Apr 14, 2017 |
| CVE-2017-7455 | Moxa MXView 2.8 allows remote attackers to read web server's private key file, no access control. | HIGH | 7.5 | Apr 14, 2017 |
Showing 1 to 13 of 13 CVEs