ZeroHour

CVE-2020-6989

CVSS 3.1
9.8 critical
EPSS
3%p88
Published
()
Modified
Description

In Moxa PT-7528 series firmware, Version 4.0 or lower, and PT-7828 series firmware, Version 3.9 or lower, a buffer overflow in the web server allows remote attackers to cause a denial-of-service condition or execute arbitrary code.

Vendors
moxa
Products
pt-7528-24tx-hv firmware, pt-7528-24tx-hv-hv firmware, pt-7528-24tx-wv firmware, pt-7528-24tx-wv-hv firmware, pt-7528-24tx-wv-wv firmware, pt-7528-12msc-12tx-4gsfp-hv firmware, pt-7528-12msc-12tx-4gsfp-hv-hv firmware, pt-7528-12msc-12tx-4gsfp-wv firmware, pt-7528-12msc-12tx-4gsfp-wv-wv firmware, pt-7528-12mst-12tx-4gsfp-hv firmware, pt-7528-12mst-12tx-4gsfp-hv-hv firmware, pt-7528-12mst-12tx-4gsfp-wv firmware
Weakness
CWE-121, CWE-787
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.