ZeroHour

CVE-2020-28144

CVSS 3.1
9.8 critical
EPSS
3%p85
Published
()
Modified
Description

Certain Moxa Inc products are affected by an improper restriction of operations in EDR-G903 Series Firmware Version 5.5 or lower, EDR-G902 Series Firmware Version 5.5 or lower, and EDR-810 Series Firmware Version 5.6 or lower. Crafted requests sent to the device may allow remote arbitrary code execution.

Vendors
moxa
Products
edr-g903 firmware, edr-g903-t firmware, edr-g902 firmware, edr-g902-t firmware, edr-810-2gsfp firmware, edr-810-2gsfp-t firmware, edr-810-vpn-2gsfp firmware, edr-810-vpn-2gsfp-t firmware
Weakness
CWE-119
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.