cbcvebase.
CVE-2023-34214
published 2023-08-17

CVE-2023-34214: TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command-injection vulnerability…

PriorityP260critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
0.37%
29.3th percentile
TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command-injection vulnerability. This vulnerability stems from insufficient input validation in the certificate-generation function, which could potentially allow malicious users to execute remote code on affected devices.

Affected

7 ranges
VendorProductVersion rangeFixed in
moxaedr-810_series1.0 – 5.12.27
moxaedr-g902_series1.0 – 5.7.17
moxaedr-g903_series1.0 – 5.7.15
moxatn-4900_firmware<= 1.2.4
moxatn-4900_series1.0 – 1.2.4
moxatn-5900_firmware<= 3.3
moxatn-5900_series1.0 – 3.3
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.