Description
An attacker with physical access to the affected Moxa UC Series devices can initiate a restart of the device and gain access to its BIOS. Command line options can then be altered, allowing the attacker to access the terminal. From the terminal, the attacker can modify the device’s authentication files to create a new user and gain full access to the system.
Published: 2023-03-07
Score: 7.6 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-23526 An attacker with physical access to the affected Moxa UC Series devices can initiate a restart of the device and gain access to its BIOS. Command line options can then be altered, allowing the attacker to access the terminal. From the terminal, the attacker can modify the device’s authentication files to create a new user and gain full access to the system.
History

Thu, 16 Jan 2025 22:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Subscriptions

Moxa Uc-2101-lx Uc-2101-lx Firmware Uc-2102-lx Uc-2102-lx Firmware Uc-2102-t-lx Uc-2102-t-lx Firmware Uc-2104-lx Uc-2104-lx Firmware Uc-2111-lx Uc-2111-lx Firmware Uc-2112-lx Uc-2112-lx Firmware Uc-2114-t-lx Uc-2114-t-lx Firmware Uc-2116-t-lx Uc-2116-t-lx Firmware Uc-3101-t-ap-lx Uc-3101-t-ap-lx Firmware Uc-3101-t-eu-lx Uc-3101-t-eu-lx Firmware Uc-3101-t-us-lx Uc-3101-t-us-lx Firmware Uc-3111-t-ap-lx Uc-3111-t-ap-lx-nw Uc-3111-t-ap-lx-nw Firmware Uc-3111-t-ap-lx Firmware Uc-3111-t-eu-lx Uc-3111-t-eu-lx-nw Uc-3111-t-eu-lx-nw Firmware Uc-3111-t-eu-lx Firmware Uc-3111-t-us-lx Uc-3111-t-us-lx-nw Uc-3111-t-us-lx-nw Firmware Uc-3111-t-us-lx Firmware Uc-3121-t-ap-lx Uc-3121-t-ap-lx Firmware Uc-3121-t-eu-lx Uc-3121-t-eu-lx Firmware Uc-3121-t-us-lx Uc-3121-t-us-lx Firmware Uc-5101-lx Uc-5101-lx Firmware Uc-5101-t-lx Uc-5101-t-lx Firmware Uc-5102-lx Uc-5102-lx Firmware Uc-5102-t-lx Uc-5102-t-lx Firmware Uc-5111-lx Uc-5111-lx Firmware Uc-5111-t-lx Uc-5111-t-lx Firmware Uc-5112-lx Uc-5112-lx Firmware Uc-5112-t-lx Uc-5112-t-lx Firmware Uc-8112-lx Uc-8112-lx Firmware Uc-8112-me-t-lx Uc-8112-me-t-lx1 Uc-8112-me-t-lx1 Firmware Uc-8112-me-t-lx Firmware Uc-8112a-me-t-lx Uc-8112a-me-t-lx Firmware Uc-8131-lx Uc-8131-lx Firmware Uc-8132-lx Uc-8132-lx Firmware Uc-8162-lx Uc-8162-lx Firmware Uc-8210-t-lx-s Uc-8210-t-lx-s Firmware Uc-8220-t-lx Uc-8220-t-lx-ap-s Uc-8220-t-lx-ap-s Firmware Uc-8220-t-lx-eu-s Uc-8220-t-lx-eu-s Firmware Uc-8220-t-lx-s Uc-8220-t-lx-s Firmware Uc-8220-t-lx-us-s Uc-8220-t-lx-us-s Firmware Uc-8220-t-lx Firmware Uc-8410a-lx Uc-8410a-lx Firmware Uc-8410a-nw-lx Uc-8410a-nw-lx Firmware Uc-8410a-nw-t-lx Uc-8410a-nw-t-lx Firmware Uc-8410a-t-lx Uc-8410a-t-lx Firmware Uc-8540-lx Uc-8540-lx Firmware Uc-8540-t-ct-lx Uc-8540-t-ct-lx Firmware Uc-8540-t-lx Uc-8540-t-lx Firmware Uc-8580-lx Uc-8580-lx Firmware Uc-8580-q-lx Uc-8580-q-lx Firmware Uc-8580-t-ct-lx Uc-8580-t-ct-lx Firmware Uc-8580-t-ct-q-lx Uc-8580-t-ct-q-lx Firmware Uc-8580-t-lx Uc-8580-t-lx Firmware Uc-8580-t-q-lx Uc-8580-t-q-lx Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2025-01-16T21:55:20.265Z

Reserved: 2023-03-07T16:16:20.728Z

Link: CVE-2023-1257

cve-icon Vulnrichment

Updated: 2024-08-02T05:40:59.879Z

cve-icon NVD

Status : Modified

Published: 2023-03-07T17:15:12.527

Modified: 2024-11-21T07:38:46.613

Link: CVE-2023-1257

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses

No weakness.