CVE-2017-7456

HIGH

Moxa MXView 2.8 - Denial of Service via Long Login Credential Payload

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2017-7456. PoCs published by hyp3rlinx.

AI-analyzed exploit summary This exploit demonstrates a Denial of Service (DoS) vulnerability in Moxa MXView v2.8 by sending an excessively large payload (200 million 'A' characters) to the login form, causing the server to crash or become unresponsive.

Description

Moxa MXView 2.8 allows remote attackers to cause a Denial of Service by sending overly long junk payload for the MXView client login credentials.

Exploits (1)

exploitdb WORKING POC
by hyp3rlinx · textdoswindows
https://www.exploit-db.com/exploits/41851

This exploit demonstrates a Denial of Service (DoS) vulnerability in Moxa MXView v2.8 by sending an excessively large payload (200 million 'A' characters) to the login form, causing the server to crash or become unresponsive.

Classification
Working Poc 100%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: Moxa MXView v2.8
No auth needed
Prerequisites: Network access to the Moxa MXView web interface
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (3)

Core 3
Core References
Exploit, Mailing List, Third Party Advisory mailing-list x_refsource_fulldisc
http://seclists.org/fulldisclosure/2017/Apr/50
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/41851/

Scores

CVSS v3 7.5
EPSS 0.2929
EPSS Percentile 97.9%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-20
Status published
Products (1)
moxa/mxview 2.8
Published Apr 14, 2017
Tracked Since Feb 18, 2026