Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-38312 | TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command-injection vulnerability. This vulnerability stems from insufficient input validation and improper authentication in the certification-generation function, which could potentially allow malicious users to execute remote code on affected devices. |
Solution
Moxa has developed appropriate solution to address the vulnerability. The solution for affected products is shown below. * TN-5900 Series: Please upgrade to firmware v3.4 or higher.
Workaround
No workaround given by the vendor.
Mon, 28 Oct 2024 06:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command-injection vulnerability. This vulnerability stems from insufficient input validation and improper authentication in the certification-generation function, which could potentially allow malicious users to execute remote code on affected devices. | TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command-injection vulnerability. This vulnerability stems from insufficient input validation and improper authentication in the certification-generation function, which could potentially allow malicious users to execute remote code on affected devices. |
| Weaknesses | CWE-78 |
Tue, 08 Oct 2024 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Moxa
Published:
Updated: 2024-10-28T06:08:37.703Z
Reserved: 2023-05-31T08:58:06.149Z
Link: CVE-2023-34215
Updated: 2024-08-02T16:01:54.350Z
Status : Modified
Published: 2023-08-17T07:15:42.333
Modified: 2024-11-21T08:06:47.147
Link: CVE-2023-34215
No data.
OpenCVE Enrichment
No data.
EUVD