QID 591015
Date Published: 2022-08-26
QID 591015: Moxa EDR-810 Web Server Cross-Site Request Forgery (CSRF) Vulnerability (TALOS-2017-0478)
AFFECTED PRODUCTS
Moxa EDR-810 V4.1 build 17030317
QID Detection Logic (Authenticated):
QID checks for the Vulnerable version of using passive scanning
An exploitable cross-site request forgery vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP packet can cause cross-site request forgery. An attacker can create malicious HTML to trigger this vulnerability.
Solution
Customers are advised to refer to CERT MITIGATIONS section TALOS-2017-0478 for affected packages and patching details.
Vendor References
- TALOS-2017-0478 -
talosintelligence.com/vulnerability_reports/TALOS-2017-0478
CVEs related to QID 591015
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| TALOS-2017-0478 |
|