CVE-2025-0415
published 2025-04-02CVE-2025-0415: A remote attacker with web administrator privileges can exploit the device’s web interface to execute arbitrary system commands through the NTP settings…
PriorityP357critical9.2CVSS 4.0
AVNACLATNPRHUINVCHVIHVAHSCNSINSAHEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
EPSS
0.53%
41.1th percentile
A remote attacker with web administrator privileges can exploit the device’s web interface to execute arbitrary system commands through the NTP settings. Successful exploitation may result in the device entering an infinite reboot loop, leading to a total or partial denial of connectivity for downstream systems that rely on its network services.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| moxa | edf-g1002-bp_series | 1.0 – 3.14 | — |
| moxa | edr-8010_series | 1.0 – 3.14 | — |
| moxa | edr-810_series | 1.0 – 5.12.39 | — |
| moxa | edr-g9004_series | 1.0 – 3.14 | — |
| moxa | edr-g9010_series | 1.0 – 3.14 | — |
| moxa | nat-102_series | 1.0 – 3.15 | — |
| moxa | oncell_g4302-lte4_series | 1.0 – 3.14 | — |
| moxa | tn-4900_series | 1.0 – 3.14 | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2025-04-02
Published