Moxa IKS and EDS ICSA-19-057-01 Multiple Security Vulnerabilities
BID:107178
CVE-2019-6518 | CVE-2019-6520 | CVE-2019-6522 | CVE-2019-6524 | CVE-2019-6557 | CVE-2019-6559 | CVE-2019-6561 | CVE-2019-6563 | CVE-2019-6565 |Info
Moxa IKS and EDS ICSA-19-057-01 Multiple Security Vulnerabilities
| Bugtraq ID: | 107178 |
| Class: | Unknown |
| CVE: |
CVE-2019-6557 CVE-2019-6561 CVE-2019-6565 CVE-2019-6520 CVE-2019-6524 CVE-2019-6526 CVE-2019-6522 CVE-2019-6518 CVE-2019-6563 CVE-2019-6559 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 26 2019 12:00AM |
| Updated: | Feb 26 2019 12:00AM |
| Credit: | Ivan B, Sergey Fedonin, and Vyacheslav Moskvin of Positive Technologies Security |
| Vulnerable: |
Moxa IKS-G6824A 4.5 Moxa EDS-510A 3.8 Moxa EDS-408A 3.8 Moxa EDS-405A 3.8 |
| Not Vulnerable: | |
Discussion
Moxa IKS and EDS ICSA-19-057-01 Multiple Security Vulnerabilities
Moxa IKS and EDS are prone to following security vulnerabilities:
1. A cross-site-scripting vulnerability
2. Multiple stack-based buffer-overflow vulnerabilities
3. A security vulnerability
4. An information disclosure vulnerability
5. A cross-site request-forgery vulnerability
6. Multiple denial-of-service vulnerabilities
7. A security-bypass vulnerability
8. An authentication bypass vulnerability
An attacker may leverage these issues to view arbitrary files within the context of the web server, execute arbitrary script code in the browser of the victim in the context of the affected site, steal cookie-based authentication credentials, gain access to sensitive information, compromise the application, access or modify data, reboot or crash of the application resulting in a denial of service condition, bypass security restrictions, or execute arbitrary code. This may lead to other vulnerabilities.
The following Moxa products and versions are affected:
IKS-G6824A series versions 4.5 and prior,
EDS-405A series versions 3.8 and prior,
EDS-408A series versions 3.8 and prior, and
EDS-510A series versions 3.8 and prior.
Moxa IKS and EDS are prone to following security vulnerabilities:
1. A cross-site-scripting vulnerability
2. Multiple stack-based buffer-overflow vulnerabilities
3. A security vulnerability
4. An information disclosure vulnerability
5. A cross-site request-forgery vulnerability
6. Multiple denial-of-service vulnerabilities
7. A security-bypass vulnerability
8. An authentication bypass vulnerability
An attacker may leverage these issues to view arbitrary files within the context of the web server, execute arbitrary script code in the browser of the victim in the context of the affected site, steal cookie-based authentication credentials, gain access to sensitive information, compromise the application, access or modify data, reboot or crash of the application resulting in a denial of service condition, bypass security restrictions, or execute arbitrary code. This may lead to other vulnerabilities.
The following Moxa products and versions are affected:
IKS-G6824A series versions 4.5 and prior,
EDS-405A series versions 3.8 and prior,
EDS-408A series versions 3.8 and prior, and
EDS-510A series versions 3.8 and prior.
Exploit / POC
Moxa IKS and EDS ICSA-19-057-01 Multiple Security Vulnerabilities
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]
Solution / Fix
Moxa IKS and EDS ICSA-19-057-01 Multiple Security Vulnerabilities
Solution:
Updates are available. Please see the references or vendor advisory for more information
Solution:
Updates are available. Please see the references or vendor advisory for more information
References
Moxa IKS and EDS ICSA-19-057-01 Multiple Security Vulnerabilities
References:
References:
- Moxa Homepage (Moxa)
- Advisory (ICSA-19-057-01) Moxa IKS, EDS (ICS-CERT)