QID 591163
Date Published: 2022-11-04
QID 591163: Moxa EDR-810 Web Server Weak Cryptography for Passwords Vulnerability (TALOS-2017-0481)
AFFECTED PRODUCTS
Moxa EDR-810 V4.1 build 17030317
QID Detection Logic (Authenticated):
QID checks for the Vulnerable version of using passive scanning
An exploitable Weak Cryptography for Passwords vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. An attacker could intercept weakly encrypted passwords and could brute force them.
Solution
Customers are advised to refer to CERT MITIGATIONS section TALOS-2017-0481 for affected packages and patching details.
Vendor References
- TALOS-2017-0481 -
talosintelligence.com/vulnerability_reports/TALOS-2017-0481
CVEs related to QID 591163
Software Advisories
| Advisory ID | Software | Component | Link |
|---|