CVE-2020-7003

Severity
7.5HIGH
EPSS
0.2%
top 58.13%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 24
Latest updateMay 24

Description

In Moxa ioLogik 2500 series firmware, Version 3.0 or lower, and IOxpress configuration utility, Version 2.3.0 or lower, sensitive information is transmitted over some web applications in clear text.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages20 packages

🔴Vulnerability Details

2
GHSA
GHSA-3xg4-q8gj-25fp: In Moxa ioLogik 2500 series firmware, Version 32022-05-24
CVEList
CVE-2020-7003: In Moxa ioLogik 2500 series firmware, Version 32020-03-24