QID 591030
Date Published: 2022-09-05
QID 591030: Moxa EDR-810 Web Server Open Virtual Private Network (OpenVPN) Config Multiple Command Injection Multiple Vulnerabilities (TALOS-2017-0482)
AFFECTED PRODUCTS
Moxa EDR-810 V4.1 build 17030317
QID Detection Logic (Authenticated):
QID checks for the Vulnerable version of using passive scanning
An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP POST can cause a privilege escalation resulting in root shell. An attacker can inject OS commands into various paramaters in the "/goform/net_Web_get_value" uri to trigger this vulnerability.
Solution
Customers are advised to refer to CERT MITIGATIONS section TALOS-2017-0482 for affected packages and patching details.
Vendor References
- TALOS-2017-0482 -
talosintelligence.com/vulnerability_reports/TALOS-2017-0482
CVEs related to QID 591030
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| CVE-2017-14432 |
|