CVE-2024-4641
MEDIUMMoxa Oncell G3470a-lte-us-t Firmware - Format String Vulnerability
Title source: ruleDescription
OnCell G3470A-LTE Series firmware versions v1.7.7 and prior have been identified as vulnerable due to accepting a format string from an external source as an argument. An attacker could modify an externally controlled format string to cause a memory leak and denial of service.
Scores
CVSS v3
6.3
EPSS
0.0048
EPSS Percentile
64.8%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Classification
CWE
CWE-134
Status
published
Affected Products (4)
moxa/oncell_g3470a-lte-us-t_firmware
< 1.7.7
moxa/oncell_g3470a-lte-eu_firmware
< 1.7.7
moxa/oncell_g3470a-lte-eu-t_firmware
< 1.7.7
moxa/oncell_g3470a-lte-us_firmware
< 1.7.7
Timeline
Published
Jun 25, 2024
Tracked Since
Feb 18, 2026