Moxa EDR-G903 series routers with firmware before 2.11 have a hardcoded account, which allows remote attackers to obtain unspecified device access via unknown vectors.
References
Link | Resource |
---|---|
http://ics-cert.us-cert.gov/pdf/ICSA-13-042-01.pdf | Broken Link Third Party Advisory US Government Resource |
http://www.moxa.com/support/download.aspx?type=support&id=492 | Vendor Advisory |
http://ics-cert.us-cert.gov/pdf/ICSA-13-042-01.pdf | Broken Link Third Party Advisory US Government Resource |
http://www.moxa.com/support/download.aspx?type=support&id=492 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 01:43
Type | Values Removed | Values Added |
---|---|---|
References | () http://ics-cert.us-cert.gov/pdf/ICSA-13-042-01.pdf - Broken Link, Third Party Advisory, US Government Resource | |
References | () http://www.moxa.com/support/download.aspx?type=support&id=492 - Vendor Advisory |
Information
Published : 2013-02-15 12:09
Updated : 2024-11-21 01:43
NVD link : CVE-2012-4712
Mitre link : CVE-2012-4712
CVE.ORG link : CVE-2012-4712
JSON object : View
Products Affected
moxa
- edr-g903_firmware
- edr-g903
CWE
CWE-798
Use of Hard-coded Credentials