CVE-2016-9332

HIGH

Moxa SoftCMS <1.6 - Info Disclosure

Title source: llm
STIX 2.1

Description

An issue was discovered in Moxa SoftCMS versions prior to Version 1.6. Moxa SoftCMS Webserver does not properly validate input. An attacker could provide unexpected values and cause the program to crash or excessive consumption of resources could result in a denial-of-service condition.

Exploits (1)

exploitdb WORKING POC
by Zhou Yu · pythondoswindows
https://www.exploit-db.com/exploits/40779

Scores

CVSS v3 7.5
EPSS 0.2970
EPSS Percentile 96.6%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-399
Status published
Products (2)
moxa/softcms < 1.5
n/a/Moxa SoftCMS prior to Version 1.6 Moxa SoftCMS prior to Version 1.6
Published Feb 13, 2017
Tracked Since Feb 18, 2026