Description
A vulnerability has been identified in the EDR-810, EDR-G902, and EDR-G903 Series, making them vulnerable to the denial-of-service vulnerability. This vulnerability stems from insufficient input validation in the URI, potentially enabling malicious users to trigger the device reboot.
References (1)
Core 1
Core References
Scores
CVSS v3
6.5
EPSS
0.0006
EPSS Percentile
18.3%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
yes
Technical Impact
partial
Details
CWE
CWE-120
Status
published
Products (8)
moxa/edr-810-2gsfp-t_firmware
< 5.12.29
moxa/edr-810-2gsfp_firmware
< 5.12.29
moxa/edr-810-vpn-2gsfp-t_firmware
< 5.12.29
moxa/edr-810-vpn-2gsfp_firmware
< 5.12.29
moxa/edr-g902-t_firmware
< 5.7.21
moxa/edr-g902_firmware
< 5.7.21
moxa/edr-g903-t_firmware
< 5.7.21
moxa/edr-g903_firmware
< 5.7.21
Published
Nov 01, 2023
Tracked Since
Feb 18, 2026