CVE-2016-8725 — Sensitive Information Exposure in Awk-3131a Series Industrial Ieee 802.11a B G N Wireless AP Bridge Client
Severity
5.3MEDIUMNVD
EPSS
0.4%
top 41.22%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 13
Latest updateMay 13
Description
An exploitable information disclosure vulnerability exists in the Web Application functionality of the Moxa AWK-3131A wireless access point running firmware 1.1. Retrieving a specific URL without authentication can reveal sensitive information to an attacker.
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:NExploitability: 3.9 | Impact: 1.4
Affected Packages2 packages
🔴Vulnerability Details
2GHSA▶
GHSA-q9wx-3p5m-qg9r: An exploitable information disclosure vulnerability exists in the Web Application functionality of the Moxa AWK-3131A wireless access point running fi↗2022-05-13
CVEList▶
CVE-2016-8725: An exploitable information disclosure vulnerability exists in the Web Application functionality of the Moxa AWK-3131A wireless access point running fi↗2017-04-13