CVE-2016-0879
Severity CVSS v4.0:
Pending analysis
Type:
CWE-532
Information Exposure Through Log Files
Publication date:
31/05/2016
Last modified:
12/04/2025
Description
Moxa Secure Router EDR-G903 devices before 3.4.12 do not delete copies of configuration and log files after completing the import function, which allows remote attackers to obtain sensitive information by requesting these files at an unspecified URL.
Impact
Base Score 3.x
7.50
Severity 3.x
HIGH
Base Score 2.0
7.80
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:moxa:edr-g903_firmware:*:*:*:*:*:*:*:* | 3.4.12 (excluding) | |
| cpe:2.3:h:moxa:edr-g903:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



