ZeroHour

CVE-2020-27185

CVSS 3.1
7.5 high
EPSS
<1%p52
Published
()
Modified
Description

Cleartext transmission of sensitive information via Moxa Service in NPort IA5000A series serial devices. Successfully exploiting the vulnerability could enable attackers to read authentication data, device configuration, and other sensitive data transmitted over Moxa Service.

Vendors
moxa
Products
nport ia5150a firmware, nport ia5250a firmware, nport ia5450a firmware
Weakness
CWE-319
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.