Moxa Nport W2150A W2250A Series vulnerabilities
3 known vulnerabilities affecting moxa/nport_w2150a_w2250a_series.
Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2026-10829P3HIGHCVSS 8.6≥ 1.0, ≤ 2.32026-06-16
CVE-2026-10829 [HIGH] CWE-121 CVE-2026-10829: A stack-based buffer overflow vulnerability has been found in the NPort W2150A-W4/W2250A-W4 Series v
A stack-based buffer overflow vulnerability has been found in the NPort W2150A-W4/W2250A-W4 Series version 1.5 and earlier. This vulnerability stems from insufficient input validation of user-supplied input in the "Server location" parameter on the Basic settings page. An attacker could exploit this vulnerability by sending crafted input to the web se
nvd
CVE-2024-1220P3HIGHCVSS 7.5≥ 1.0, ≤ 2.32024-03-06
CVE-2024-1220 [HIGH] CWE-121 CVE-2024-1220: A stack-based buffer overflow in the built-in web server in Moxa NPort W2150A/W2250A Series firmware
A stack-based buffer overflow in the built-in web server in Moxa NPort W2150A/W2250A Series firmware version 2.3 and prior allows a remote attacker to exploit the vulnerability by sending crafted payload to the web service. Successful exploitation of the vulnerability could result in denial of service.
nvd
CVE-2026-10828P3MEDIUMCVSS 6.9≥ 1.0, ≤ 2.32026-06-16
CVE-2026-10828 [MEDIUM] CWE-134 CVE-2026-10828: A format string vulnerability has been found in the "alias" parameter of the Serial Param configurat
A format string vulnerability has been found in the "alias" parameter of the Serial Param configuration page in the NPort W2150A-W4/W2250A-W4 Series version 1.5 and prior. This vulnerability stems from insufficient input validation and improper handling of externally supplied format strings. An attacker could exploit this vulnerability by sending cr
nvd