CVE-2016-0879

Severity
7.5HIGH
EPSS
0.8%
top 26.38%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 31
Latest updateMay 13

Description

Moxa Secure Router EDR-G903 devices before 3.4.12 do not delete copies of configuration and log files after completing the import function, which allows remote attackers to obtain sensitive information by requesting these files at an unspecified URL.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-4mj8-j4rr-9758: Moxa Secure Router EDR-G903 devices before 32022-05-13
CVEList
CVE-2016-0879: Moxa Secure Router EDR-G903 devices before 32016-05-31
CVE-2016-0879 (HIGH CVSS 7.5) | Moxa Secure Router EDR-G903 devices | cvebase.io