A vulnerability has been identified in PT-G503 Series versions prior to v5.2, where the session cookies attribute is not set properly in the affected application. The vulnerability may lead to security risks, potentially exposing user session data to unauthorized access and manipulation.
References
Link | Resource |
---|---|
https://www.moxa.com/en/support/product-support/security-advisory/mpsa-230203-pt-g503-series-multiple-vulnerabilities | Mitigation Vendor Advisory |
https://www.moxa.com/en/support/product-support/security-advisory/mpsa-230203-pt-g503-series-multiple-vulnerabilities | Mitigation Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 08:34
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.moxa.com/en/support/product-support/security-advisory/mpsa-230203-pt-g503-series-multiple-vulnerabilities - Mitigation, Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 3.1 |
09 Nov 2023, 19:47
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://www.moxa.com/en/support/product-support/security-advisory/mpsa-230203-pt-g503-series-multiple-vulnerabilities - Mitigation, Vendor Advisory | |
CPE | cpe:2.3:h:moxa:eds-g503:-:*:*:*:*:*:*:* cpe:2.3:o:moxa:eds-g503_firmware:*:*:*:*:*:*:*:* |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.3 |
First Time |
Moxa eds-g503
Moxa Moxa eds-g503 Firmware |
|
CWE | CWE-668 |
02 Nov 2023, 17:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-11-02 17:15
Updated : 2024-11-21 08:34
NVD link : CVE-2023-4217
Mitre link : CVE-2023-4217
CVE.ORG link : CVE-2023-4217
JSON object : View
Products Affected
moxa
- eds-g503
- eds-g503_firmware