Moxa Mgate Mb3280 Firmware vulnerabilities
3 known vulnerabilities affecting moxa/mgate_mb3280_firmware.
Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH2
Vulnerabilities
Page 1 of 1
CVE-2022-27048HIGHCVSS 7.4≤ 4.12022-04-15
CVE-2022-27048 [HIGH] CVE-2022-27048: A vulnerability has been discovered in Moxa MGate which allows an attacker to perform a man-in-the-m
A vulnerability has been discovered in Moxa MGate which allows an attacker to perform a man-in-the-middle (MITM) attack on the device. This affects MGate MB3170 Series Firmware Version 4.2 or lower. and MGate MB3270 Series Firmware Version 4.2 or lower. and MGate MB3280 Series Firmware Version 4.1 or lower. and MGate MB3480 Series Firmware Version 3.2 or lowe
nvd
CVE-2021-4161HIGHCVSS 7.5≤ 4.12021-12-27
CVE-2021-4161 [CRITICAL] CWE-319 CVE-2021-4161: The affected products contain vulnerable firmware, which could allow an attacker to sniff the traffi
The affected products contain vulnerable firmware, which could allow an attacker to sniff the traffic and decrypt login credential details. This could give an attacker admin rights through the HTTP web server.
nvd
CVE-2016-5804CRITICALCVSS 9.8fixed in 2.72016-07-15
CVE-2016-5804 [CRITICAL] CWE-326 CVE-2016-5804: Moxa MGate MB3180 before 1.8, MGate MB3280 before 2.7, MGate MB3480 before 2.6, MGate MB3170 before
Moxa MGate MB3180 before 1.8, MGate MB3280 before 2.7, MGate MB3480 before 2.6, MGate MB3170 before 2.5, and MGate MB3270 before 2.7 use weak encryption, which allows remote attackers to bypass authentication via a brute-force series of guesses for a parameter value.
nvd