CVE-2019-18242Incorrectly Specified Destination in a Communication Channel in Iologik 2512-hspa-t Firmware

Severity
7.5HIGHNVD
EPSS
0.5%
top 36.24%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 24
Latest updateMay 24

Description

In Moxa ioLogik 2500 series firmware, Version 3.0 or lower, and IOxpress configuration utility, Version 2.3.0 or lower, frequent and multiple requests for short-term use may cause the web server to fail.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages20 packages

🔴Vulnerability Details

2
GHSA
GHSA-m55h-2h99-7g5h: In Moxa ioLogik 2500 series firmware, Version 32022-05-24
CVEList
CVE-2019-18242: In Moxa ioLogik 2500 series firmware, Version 32020-03-24
CVE-2019-18242 — HIGH severity | cvebase