cbcvebase.
CVE-2025-15017
published 2025-12-31

CVE-2025-15017: A vulnerability exists in serial device servers where active debug code remains enabled in the UART interface. An attacker with physical access to the device…

PriorityP433high7CVSS 4.0
AVPACLATNPRNUINVCHVIHVAHSCNSINSANEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
EPSS
0.22%
12.6th percentile
A vulnerability exists in serial device servers where active debug code remains enabled in the UART interface. An attacker with physical access to the device can directly connect to the UART interface and, without authentication, user interaction, or execution conditions, gain unauthorized access to internal debug functionality. Exploitation is low complexity and allows an attacker to execute privileged operations and access sensitive system resources, resulting in a high impact to the confidentiality, integrity, and availability of the affected device. No security impact to external or dependent systems has been identified.

Affected

11 ranges
VendorProductVersion rangeFixed in
moxanport_5000ai-m12_series
moxanport_5100_series
moxanport_5100a_series
moxanport_5200_series
moxanport_5200a_series
moxanport_5400_series
moxanport_5600-dt_series
moxanport_5600_series
moxanport_ia5000-g2_series
moxanport_ia5000_series
moxanport_ia5000a_series
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.