ZeroHour

CVE-2016-5804

CVSS 3.1
9.8 critical
EPSS
1%p64
Published
()
Modified
Description

Moxa MGate MB3180 before 1.8, MGate MB3280 before 2.7, MGate MB3480 before 2.6, MGate MB3170 before 2.5, and MGate MB3270 before 2.7 use weak encryption, which allows remote attackers to bypass authentication via a brute-force series of guesses for a parameter value.

Vendors
moxa
Products
mgate mb3180 firmware, mgate mb3280 firmware, mgate mb3480 firmware, mgate mb3170 firmware, mgate mb3270 firmware
Weakness
CWE-326
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.