CVE-2016-0879
Summary
| CVE | CVE-2016-0879 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2016-05-31 01:59:00 UTC |
| Updated | 2022-04-12 18:05:00 UTC |
| Description | Moxa Secure Router EDR-G903 devices before 3.4.12 do not delete copies of configuration and log files after completing the import function, which allows remote attackers to obtain sensitive information by requesting these files at an unspecified URL. |
Risk And Classification
Problem Types: CWE-532
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Moxa | Edr-g903 | - | All | All | All |
| Hardware | Moxa | Edr-g903 | - | All | All | All |
| Operating System | Moxa | Edr-g903 Firmware | All | All | All | All |
| Operating System | Moxa | Edr G903 Firmware | 3.4.11 | All | All | All |
| Operating System | Moxa | Edr G903 Firmware | 3.4.11 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Moxa EDR-G903 Secure Router Vulnerabilities | ICS-CERT | MISC | ics-cert.us-cert.gov | Third Party Advisory, US Government Resource |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.