8.5

CVE-2015-6464

The administrative web interface on Moxa EDS-405A and EDS-408A switches with firmware before 3.6 allows remote authenticated users to bypass a read-only protection mechanism by using Firefox with a web-developer plugin.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
MoxaEds-405a Firmware Version <= 3.4
   MoxaEds-405a Version-
   MoxaEds-408a Version-
MoxaEds-408a Firmware Version <= 3.4
   MoxaEds-405a Version-
   MoxaEds-408a Version-
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 2% 0.782
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 8.5 8 9.2
AV:N/AC:L/Au:S/C:N/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.moxa.com/support/download.aspx?type=support&id=328
Patch
https://ics-cert.us-cert.gov/advisories/ICSA-15-246-03
Third Party Advisory
US Government Resource