7.5

CVE-2019-18242

In Moxa ioLogik 2500 series firmware, Version 3.0 or lower, and IOxpress configuration utility, Version 2.3.0 or lower, frequent and multiple requests for short-term use may cause the web server to fail.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
MoxaIologik 2512 Firmware Version <= 3.0
   MoxaIologik 2512 Version-
MoxaIologik 2512-t Firmware Version <= 3.0
   MoxaIologik 2512-t Version-
MoxaIologik 2512-hspa Firmware Version <= 3.0
   MoxaIologik 2512-hspa Version-
MoxaIologik 2512-hspa-t Firmware Version <= 3.0
   MoxaIologik 2512-hspa-t Version-
MoxaIologik 2512-wl1-eu Firmware Version <= 3.0
   MoxaIologik 2512-wl1-eu Version-
MoxaIologik 2512-wl1-eu-t Firmware Version <= 3.0
   MoxaIologik 2512-wl1-eu-t Version-
MoxaIologik 2512-wl1-us Firmware Version <= 3.0
   MoxaIologik 2512-wl1-us Version-
MoxaIologik 2512-wl1-us-t Firmware Version <= 3.0
   MoxaIologik 2512-wl1-us-t Version-
MoxaIologik 2512-wl1-jp Firmware Version <= 3.0
   MoxaIologik 2512-wl1-jp Version-
MoxaIologik 2512-wl1-jp-t Firmware Version <= 3.0
   MoxaIologik 2512-wl1-jp-t Version-
MoxaIologik 2542 Firmware Version <= 3.0
   MoxaIologik 2542 Version-
MoxaIologik 2542-t Firmware Version <= 3.0
   MoxaIologik 2542-t Version-
MoxaIologik 2542-hspa Firmware Version <= 3.0
   MoxaIologik 2542-hspa Version-
MoxaIologik 2542-hspa-t Firmware Version <= 3.0
   MoxaIologik 2542-hspa-t Version-
MoxaIologik 2542-wl1-eu Firmware Version <= 3.0
   MoxaIologik 2542-wl1-eu Version-
MoxaIologik 2542-wl1-eu-t Firmware Version <= 3.0
   MoxaIologik 2542-wl1-eu-t Version-
MoxaIologik 2542-wl1-us Firmware Version <= 3.0
   MoxaIologik 2542-wl1-us Version-
MoxaIologik 2542-wl1-us-t Firmware Version <= 3.0
   MoxaIologik 2542-wl1-us-t Version-
MoxaIologik 2542-wl1-jp Firmware Version <= 3.0
   MoxaIologik 2542-wl1-jp Version-
MoxaIologik 2542-wl1-jp-t Firmware Version <= 3.0
   MoxaIologik 2542-wl1-jp-t Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.45% 0.632
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P
CWE-941 Incorrectly Specified Destination in a Communication Channel

The product creates a communication channel to initiate an outgoing request to an actor, but it does not correctly specify the intended destination for that actor.