CVE-2021-38460Unprotected Transport of Credentials in Mxview Network Management Software

Severity
7.5HIGHNVD
EPSS
0.6%
top 29.51%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 12
Latest updateMay 24

Description

A path traversal vulnerability in the Moxa MXview Network Management software Versions 3.x to 3.2.2 may allow an attacker to create or overwrite critical files used to execute code, such as programs or libraries.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages2 packages

NVDmoxa/mxview3.03.2.2

🔴Vulnerability Details

2
GHSA
GHSA-j57w-g5v3-32qm: A path traversal vulnerability in the Moxa MXview Network Management software Versions 32022-05-24
CVEList
Moxa MXview Network Management Software2021-10-12
CVE-2021-38460 — Unprotected Transport of Credentials | cvebase