CVE-2021-4161
published 2021-12-27CVE-2021-4161: The affected products contain vulnerable firmware, which could allow an attacker to sniff the traffic and decrypt login credential details. This could give an…
PriorityP342high7.5CVSS 3.1
AVNACLPRNUINSUCHINAN
EPSS
0.66%
47.3th percentile
The affected products contain vulnerable firmware, which could allow an attacker to sniff the traffic and decrypt login credential details. This could give an attacker admin rights through the HTTP web server.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| moxa | mgate_mb3180_firmware | <= 2.2 | — |
| moxa | mgate_mb3180_series | >= all < 2.2 | 2.2 |
| moxa | mgate_mb3280_firmware | <= 4.1 | — |
| moxa | mgate_mb3280_series | — | — |
| moxa | mgate_mb3480_firmware | <= 3.2 | — |
| moxa | mgate_mb3480_series | — | — |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
CISA ICS
Moxa MGate Protocol Gateways
cisa_ics·2021-12-23·CVSS 9.8
[CRITICAL] Moxa MGate Protocol Gateways
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Moxa MGate Protocol Gateways
Last RevisedDecember 23, 2021
Alert CodeICSA-21-357-01
## 1. EXECUTIVE SUMMARY
- CVSS v3 9.8
- ATTENTION: Exploitable remotely/low attack complexity
- Vendor: Moxa
- Equipment: MGate MB3180/MB3280/MB3480 Series Protocol Gateways
- Vulnerability: Cleartext Transmission of Sensitive Information
## 2. RISK EVALUATION
Successful exploitation of this vulnerability could allow remote attackers to obtain sensitive information.
## 3. TECHNICAL DETAILS
## 3.1 AFFECTED PRODUCTS
The following firmware versions of MGate MB3000 Series, a serial-to-Ethern
GHSA
GHSA-628p-46mw-v4f9: The affected products contain vulnerable firmware, which could allow an attacker to sniff the traffic and decrypt login credential details
ghsa_unreviewed·2021-12-28
CVE-2021-4161 [HIGH] CWE-319 GHSA-628p-46mw-v4f9: The affected products contain vulnerable firmware, which could allow an attacker to sniff the traffic and decrypt login credential details
The affected products contain vulnerable firmware, which could allow an attacker to sniff the traffic and decrypt login credential details. This could give an attacker admin rights through the HTTP web server.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2021-12-27
Published