cbcvebase.

Moxa Nport W2150A W2250A Series vulnerabilities

3 known vulnerabilities affecting moxa/nport_w2150a_w2250a_series.

Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM1

Vulnerabilities

Page 1 of 1
CVE-2026-10829P3HIGHCVSS 8.6≥ 1.0, ≤ 2.32026-06-16
CVE-2026-10829 [HIGH] CWE-121 CVE-2026-10829: A stack-based buffer overflow vulnerability has been found in the NPort W2150A-W4/W2250A-W4 Series v A stack-based buffer overflow vulnerability has been found in the NPort W2150A-W4/W2250A-W4 Series version 1.5 and earlier. This vulnerability stems from insufficient input validation of user-supplied input in the "Server location" parameter on the Basic settings page. An attacker could exploit this vulnerability by sending crafted input to the web se
nvd
CVE-2024-1220P3HIGHCVSS 7.5≥ 1.0, ≤ 2.32024-03-06
CVE-2024-1220 [HIGH] CWE-121 CVE-2024-1220: A stack-based buffer overflow in the built-in web server in Moxa NPort W2150A/W2250A Series firmware A stack-based buffer overflow in the built-in web server in Moxa NPort W2150A/W2250A Series firmware version 2.3 and prior allows a remote attacker to exploit the vulnerability by sending crafted payload to the web service. Successful exploitation of the vulnerability could result in denial of service.
nvd
CVE-2026-10828P3MEDIUMCVSS 6.9≥ 1.0, ≤ 2.32026-06-16
CVE-2026-10828 [MEDIUM] CWE-134 CVE-2026-10828: A format string vulnerability has been found in the "alias" parameter of the Serial Param configurat A format string vulnerability has been found in the "alias" parameter of the Serial Param configuration page in the NPort W2150A-W4/W2250A-W4 Series version 1.5 and prior. This vulnerability stems from insufficient input validation and improper handling of externally supplied format strings. An attacker could exploit this vulnerability by sending cr
nvd
Moxa Nport W2150A W2250A Series vulnerabilities | cvebase