CVE-2020-6993
- EPSS 1.31%
- Veröffentlicht 24.03.2020 20:15:15
- Zuletzt bearbeitet 21.11.2024 05:36:27
In Moxa PT-7528 series firmware, Version 4.0 or lower, and PT-7828 series firmware, Version 3.9 or lower, an attacker can gain access to sensitive information from the web service without authorization.
CVE-2020-6995
- EPSS 1.33%
- Veröffentlicht 24.03.2020 20:15:15
- Zuletzt bearbeitet 21.11.2024 05:36:27
In Moxa PT-7528 series firmware, Version 4.0 or lower, and PT-7828 series firmware, Version 3.9 or lower, the application utilizes weak password requirements, which may allow an attacker to gain unauthorized access.
- EPSS 1.65%
- Veröffentlicht 24.03.2020 20:15:14
- Zuletzt bearbeitet 21.11.2024 05:36:26
In Moxa PT-7528 series firmware, Version 4.0 or lower, and PT-7828 series firmware, Version 3.9 or lower, these devices use a hard-coded service code for access to the console.
CVE-2020-6983
- EPSS 1.24%
- Veröffentlicht 24.03.2020 19:15:21
- Zuletzt bearbeitet 21.11.2024 05:36:25
In Moxa PT-7528 series firmware, Version 4.0 or lower, and PT-7828 series firmware, Version 3.9 or lower, the affected products use a hard-coded cryptographic key, which increases the possibility that confidential data can be recovered.
CVE-2020-6987
- EPSS 0.81%
- Veröffentlicht 24.03.2020 19:15:21
- Zuletzt bearbeitet 21.11.2024 05:36:26
In Moxa PT-7528 series firmware, Version 4.0 or lower, and PT-7828 series firmware, Version 3.9 or lower, the affected products use a weak cryptographic algorithm, which may allow confidential information to be disclosed.
CVE-2020-6989
- EPSS 2.83%
- Veröffentlicht 24.03.2020 19:15:21
- Zuletzt bearbeitet 21.11.2024 05:36:26
In Moxa PT-7528 series firmware, Version 4.0 or lower, and PT-7828 series firmware, Version 3.9 or lower, a buffer overflow in the web server allows remote attackers to cause a denial-of-service condition or execute arbitrary code.