Known Vulnerabilities for Thingspro by Moxa
Listed below are 7 of the newest known vulnerabilities associated with "Thingspro" by "Moxa".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2018-18396 json | Remote Code Execution in Moxa ThingsPro IIoT Gateway and Device Management Software Solutions version 2.1. | 9.8 - CRITICAL | 2018-10-19 | 2020-08-24 |
| CVE-2018-18395 json | Hidden Token Access in Moxa ThingsPro IIoT Gateway and Device Management Software Solutions version 2.1. | 9.8 - CRITICAL | 2018-10-19 | 2020-08-24 |
| CVE-2018-18394 json | Sensitive Information Stored in Clear Text in Moxa ThingsPro IIoT Gateway and Device Management Software Solutions version 2.... | 9.8 - CRITICAL | 2018-10-19 | 2019-10-03 |
| CVE-2018-18393 json | Password Management Issue in Moxa ThingsPro IIoT Gateway and Device Management Software Solutions version 2.1. | 9.8 - CRITICAL | 2018-10-19 | 2019-10-03 |
| CVE-2018-18392 json | Privilege Escalation via Broken Access Control in Moxa ThingsPro IIoT Gateway and Device Management Software Solutions versio... | 8.8 - HIGH | 2018-10-19 | 2019-10-03 |
| CVE-2018-18391 json | User Privilege Escalation in Moxa ThingsPro IIoT Gateway and Device Management Software Solutions version 2.1. | 8.8 - HIGH | 2018-10-19 | 2019-10-03 |
| CVE-2018-18390 json | User Enumeration in Moxa ThingsPro IIoT Gateway and Device Management Software Solutions version 2.1. | 7.5 - HIGH | 2018-10-19 | 2018-12-03 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Moxa | Thingspro | 2.1 |