A vulnerability has been identified in the EDR-810, EDR-G902, and EDR-G903 Series, making them vulnerable to the denial-of-service vulnerability. This vulnerability stems from insufficient input validation in the URI, potentially enabling malicious users to trigger the device reboot.

Project Subscriptions

Vendors Products
Edr-810-2gsfp Subscribe
Edr-810-2gsfp-t Subscribe
Edr-810-2gsfp-t Firmware Subscribe
Edr-810-2gsfp Firmware Subscribe
Edr-810-vpn-2gsfp Subscribe
Edr-810-vpn-2gsfp-t Subscribe
Edr-810-vpn-2gsfp-t Firmware Subscribe
Edr-810-vpn-2gsfp Firmware Subscribe
Edr-g902 Subscribe
Edr-g902-t Subscribe
Edr-g902-t Firmware Subscribe
Edr-g902 Firmware Subscribe
Edr-g903 Subscribe
Edr-g903-t Subscribe
Edr-g903-t Firmware Subscribe
Edr-g903 Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2023-54311 A vulnerability has been identified in the EDR-810, EDR-G902, and EDR-G903 Series, making them vulnerable to the denial-of-service vulnerability. This vulnerability stems from insufficient input validation in the URI, potentially enabling malicious users to trigger the device reboot.
Fixes

Solution

Moxa has developed appropriate solutions to address the vulnerabilities. The solutions for affected products are shown below. * EDR-810 Series: Please upgrade to firmware v5.12.29 or later * EDR-G902 Series: Please upgrade to firmware v5.7.21 or later * EDR-G903 Series: Please upgrade to firmware v5.7.21 or later


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: Moxa

Published:

Updated: 2024-09-06T18:51:24.564Z

Reserved: 2023-08-21T03:25:47.608Z

Link: CVE-2023-4452

cve-icon Vulnrichment

Updated: 2024-08-02T07:24:04.727Z

cve-icon NVD

Status : Modified

Published: 2023-11-01T15:15:08.803

Modified: 2024-11-21T08:35:11.450

Link: CVE-2023-4452

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses