Description
An out-of-bounds write vulnerability exists in some of the Ethernet switches because of improper validation of the username field length during Web login processing. This may allow a remote attacker to submit a specially crafted overly long input, triggering a buffer overflow that can cause the authentication process to crash and result in a Denial of Service (DoS) attack.
Published: 2026-09-18
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: Denial of Service
Action: Patch immediately
AI Analysis

Impact

An improper validation of the username field in the web login processing of Moxa TN‑4500B Ethernet switches allows an attacker to supply an overly long input. The resulting out‑of‑bounds write causes a buffer overflow that can crash the authentication process, which in turn results in a denial of service. This flaw is classified as a CWE‑787 out‑of‑bounds write and presents a medium to high severity risk. The impact is limited to service disruption; there is no known path for privilege escalation or data compromise.

Affected Systems

Moxa TN‑4500B Series Ethernet switches, including firmware 2.1 and other unspecified revisions, are affected. The vulnerability is present in the web interface used for device configuration. No other vendors or product lines are listed as affected.

Risk and Exploitability

The CVSS score of 8.8 indicates a high severity vulnerability. The EPSS score of less than 1% suggests a very low current exploit probability. The flaw is not listed in CISA's KEV catalog. Based on the description, the likely attack vector is a remote attacker accessing the device’s web management interface over a network to submit a crafted username input. Successful exploitation would result in the device’s authentication service crashing, causing a temporary denial of service until the device is rebooted or the service is restarted.

Generated by OpenCVE AI on September 19, 2026 at 20:18 UTC.

Remediation

Vendor Solution

Refer to Moxa's security advisory: https://www.moxa.com/en/support/product-support/security-advisory/mpsa-252620-cve-2026-15579-out-of-bounds-write-vulnerability-in-ethernet-switch


OpenCVE Recommended Actions

  • Apply the latest firmware or vendor patch published in Moxa’s security advisory.
  • Restrict access to the device’s web management interface to trusted networks, IP ranges, or VPN tunnels, and disable it on unnecessary ports.
  • Enable logging for authentication failures and configure alerts for repeated crash attempts to detect potential exploitation.

Generated by OpenCVE AI on September 19, 2026 at 20:18 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sat, 19 Sep 2026 20:45:00 +0000

Type Values Removed Values Added
Title Out‑of‑bounds write in Moxa TN‑4500B Ethernet switch username field leading to DoS

Sat, 19 Sep 2026 01:15:00 +0000

Type Values Removed Values Added
Title Out‑of‑bounds write in Moxa TN‑4500B Ethernet switch username field leading to DoS

Fri, 18 Sep 2026 11:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 18 Sep 2026 09:45:00 +0000

Type Values Removed Values Added
Description An out-of-bounds write vulnerability exists in some of the Ethernet switches because of improper validation of the username field length during Web login processing. This may allow a remote attacker to submit a specially crafted overly long input, triggering a buffer overflow that can cause the authentication process to crash and result in a Denial of Service (DoS) attack.
First Time appeared Moxa
Moxa tn-4500b Series
Weaknesses CWE-787
CPEs cpe:2.3:a:moxa:tn-4500b_series:*:*:*:*:*:*:*:*
cpe:2.3:a:moxa:tn-4500b_series:2.1:*:*:*:*:*:*:*
Vendors & Products Moxa
Moxa tn-4500b Series
References
Metrics cvssV4_0

{'score': 8.8, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Moxa Tn-4500b Series
cve-icon MITRE

Status: PUBLISHED

Assigner: Moxa

Published:

Updated: 2026-09-18T10:39:14.140Z

Reserved: 2026-07-13T09:51:45.547Z

Link: CVE-2026-15579

cve-icon Vulnrichment

Updated: 2026-09-18T10:39:09.978Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-18T10:17:04.537

Modified: 2026-09-18T19:05:01.127

Link: CVE-2026-15579

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-19T20:30:07Z

Weaknesses