CVE-2020-6995

CRITICAL

Moxa PT-7528/7828 <4.0/<3.9 - Info Disclosure

Title source: llm
STIX 2.1

Description

In Moxa PT-7528 series firmware, Version 4.0 or lower, and PT-7828 series firmware, Version 3.9 or lower, the application utilizes weak password requirements, which may allow an attacker to gain unauthorized access.

Scores

CVSS v3 9.8
EPSS 0.0049
EPSS Percentile 65.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-521
Status published
Products (50)
moxa/pt-7528-12msc-12tx-4gsfp-hv-hv_firmware < 4.0
moxa/pt-7528-12msc-12tx-4gsfp-hv_firmware < 4.0
moxa/pt-7528-12msc-12tx-4gsfp-wv-wv_firmware < 4.0
moxa/pt-7528-12msc-12tx-4gsfp-wv_firmware < 4.0
moxa/pt-7528-12mst-12tx-4gsfp-hv-hv_firmware < 4.0
moxa/pt-7528-12mst-12tx-4gsfp-hv_firmware < 4.0
moxa/pt-7528-12mst-12tx-4gsfp-wv-wv_firmware < 4.0
moxa/pt-7528-12mst-12tx-4gsfp-wv_firmware < 4.0
moxa/pt-7528-16msc-8tx-4gsfp-hv-hv_firmware < 4.0
moxa/pt-7528-16msc-8tx-4gsfp-hv_firmware < 4.0
... and 40 more
Published Mar 24, 2020
Tracked Since Feb 18, 2026