Moxa Nport 5110 Firmware vulnerabilities

6 known vulnerabilities affecting moxa/nport_5110_firmware.

Total CVEs
6
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH6

Vulnerabilities

Page 1 of 1
CVE-2023-4929HIGHCVSS 8.8≤ 2.102023-10-03
CVE-2023-4929 [MEDIUM] CWE-354 CVE-2023-4929: All firmware versions of the NPort 5000 Series are affected by an improper validation of integrity c All firmware versions of the NPort 5000 Series are affected by an improper validation of integrity check vulnerability. This vulnerability results from insufficient checks on firmware updates or upgrades, potentially allowing malicious users to manipulate the firmware and gain control of devices.
nvd
CVE-2022-2043HIGHCVSS 7.5v2.102022-08-31
CVE-2022-2043 [HIGH] CWE-787 CVE-2022-2043: MOXA NPort 5110: Firmware Versions 2.10 is vulnerable to an out-of-bounds write that can cause the d MOXA NPort 5110: Firmware Versions 2.10 is vulnerable to an out-of-bounds write that can cause the device to become unresponsive.
nvd
CVE-2022-2044HIGHCVSS 8.2v2.102022-08-31
CVE-2022-2044 [HIGH] CWE-787 CVE-2022-2044: MOXA NPort 5110: Firmware Versions 2.10 is vulnerable to an out-of-bounds write that may allow an at MOXA NPort 5110: Firmware Versions 2.10 is vulnerable to an out-of-bounds write that may allow an attacker to overwrite values in memory, causing a denial-of-service condition or potentially bricking the device.
nvd
CVE-2017-16715HIGHCVSS 7.5v2.2v2.4+2 more2017-11-16
CVE-2017-16715 [HIGH] CWE-200 CVE-2017-16715: An Information Exposure issue was discovered in Moxa NPort 5110 Version 2.2, NPort 5110 Version 2.4, An Information Exposure issue was discovered in Moxa NPort 5110 Version 2.2, NPort 5110 Version 2.4, NPort 5110 Version 2.6, NPort 5110 Version 2.7, NPort 5130 Version 3.7 and prior, and NPort 5150 Version 3.7 and prior. An attacker may be able to exploit a flaw in the handling of Ethernet frame padding that may allow for information exposure.
nvd
CVE-2017-14028HIGHCVSS 7.5v2.2v2.4+2 more2017-11-16
CVE-2017-14028 [HIGH] CWE-400 CVE-2017-14028: A Resource Exhaustion issue was discovered in Moxa NPort 5110 Version 2.2, NPort 5110 Version 2.4, N A Resource Exhaustion issue was discovered in Moxa NPort 5110 Version 2.2, NPort 5110 Version 2.4, NPort 5110 Version 2.6, NPort 5110 Version 2.7, NPort 5130 Version 3.7 and prior, and NPort 5150 Version 3.7 and prior. An attacker may be able to exhaust memory resources by sending a large amount of TCP SYN packets.
nvd
CVE-2017-16719HIGHCVSS 7.5v2.2v2.4+2 more2017-11-16
CVE-2017-16719 [HIGH] CWE-74 CVE-2017-16719: An Injection issue was discovered in Moxa NPort 5110 Version 2.2, NPort 5110 Version 2.4, NPort 5110 An Injection issue was discovered in Moxa NPort 5110 Version 2.2, NPort 5110 Version 2.4, NPort 5110 Version 2.6, NPort 5110 Version 2.7, NPort 5130 Version 3.7 and prior, and NPort 5150 Version 3.7 and prior. An attacker may be able to inject packets that could potentially disrupt the availability of the device.
nvd