cbcvebase.
CVE-2025-0676
published 2025-04-02

CVE-2025-0676: This vulnerability involves command injection in tcpdump within Moxa products, enabling an authenticated attacker with console access to exploit improper input…

PriorityP352high8.6CVSS 4.0
AVNACLATNPRHUINVCHVIHVAHSCNSINSANEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
EPSS
0.99%
58.4th percentile
This vulnerability involves command injection in tcpdump within Moxa products, enabling an authenticated attacker with console access to exploit improper input validation to inject and execute systems commands. Successful exploitation could result in privilege escalation, allowing the attacker to gain root shell access and maintain persistent control over the device, potentially disrupting network services and affecting the availability of downstream systems that rely on its connectivity.

Affected

8 ranges
VendorProductVersion rangeFixed in
moxaedf-g1002-bp_series1.0 – 3.14
moxaedr-8010_series1.0 – 3.14
moxaedr-810_series1.0 – 5.12.39
moxaedr-g9004_series1.0 – 3.14
moxaedr-g9010_series1.0 – 3.14
moxanat-102_series1.0 – 3.15
moxaoncell_g4302-lte4_series1.0 – 3.14
moxatn-4900_series1.0 – 3.14
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.