CVE-2020-27185

Cleartext transmission of sensitive information via Moxa Service in NPort IA5000A series serial devices. Successfully exploiting the vulnerability could enable attackers to read authentication data, device configuration, and other sensitive data transmitted over Moxa Service.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:moxa:nport_ia5150a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:moxa:nport_ia5150a:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:moxa:nport_ia5250a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:moxa:nport_ia5250a:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:moxa:nport_ia5450a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:moxa:nport_ia5450a:-:*:*:*:*:*:*:*

History

07 Nov 2023, 03:20

Type Values Removed Values Added
References
  • {'url': 'https://ics-cert.kaspersky.com/advisories/klcert-advisories/2021/05/11/klcert-20-021,', 'name': 'https://ics-cert.kaspersky.com/advisories/klcert-advisories/2021/05/11/klcert-20-021,', 'tags': ['Broken Link'], 'refsource': 'MISC'}
  • () https://ics-cert.kaspersky.com/advisories/klcert-advisories/2021/05/11/klcert-20-021%2C -

Information

Published : 2021-05-14 13:15

Updated : 2024-02-28 18:28


NVD link : CVE-2020-27185

Mitre link : CVE-2020-27185

CVE.ORG link : CVE-2020-27185


JSON object : View

Products Affected

moxa

  • nport_ia5150a_firmware
  • nport_ia5150a
  • nport_ia5250a_firmware
  • nport_ia5450a_firmware
  • nport_ia5250a
  • nport_ia5450a
CWE
CWE-319

Cleartext Transmission of Sensitive Information