Moxa EDR-810
cpe:2.3:h:moxa:edr-810:*:*:*:*:*:*:*, +5 more
- <= 5.12.39
A command injection vulnerability has been identified in tcpdump within multiple Moxa product series, including secure routers, cellular routers, and network security appliances. This vulnerability allows an authenticated attacker with console access to exploit improper input validation, injecting and executing system commands. Successful exploitation could lead to privilege escalation, granting root access and allowing persistent control over the device. This could disrupt network services and impact the availability of downstream systems reliant on the device's connectivity.
Exploitation of this vulnerability could result in unauthorized command execution, privilege escalation to root, and disruption of network services, affecting connected systems that rely on the compromised device for connectivity.
Users are advised to upgrade to the latest firmware version. Specific upgrade instructions can be found in the Moxa Security Advisory MPSA-259491.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.