Severity
10.0CRITICAL
EPSS
0.6%
top 31.61%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 12
Latest updateMay 24

Description

A path traversal vulnerability in the Moxa MXview Network Management software Versions 3.x to 3.2.2 may allow an attacker to create or overwrite critical files used to execute code, such as programs or libraries.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:HExploitability: 3.9 | Impact: 6.0

Affected Packages2 packages

NVDmoxa/mxview3.03.2.2

🔴Vulnerability Details

2
GHSA
GHSA-x75v-mvrc-2f88: A path traversal vulnerability in the Moxa MXview Network Management software Versions 32022-05-24
CVEList
Moxa MXview Network Management Software2021-10-12

🔍Detection Rules

1
Suricata
ET EXPLOIT Possible Moxa MxView RCE Attempt (CVE-2021-38454)2022-02-14
CVE-2021-38454 (CRITICAL CVSS 10) | A path traversal vulnerability in t | cvebase.io