CVE-2017-7915
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
29/05/2017
Last modified:
20/04/2025
Description
An Improper Restriction of Excessive Authentication Attempts issue was discovered in Moxa OnCell G3110-HSPA Version 1.3 build 15082117 and previous versions, OnCell G3110-HSDPA Version 1.2 Build 09123015 and previous versions, OnCell G3150-HSDPA Version 1.4 Build 11051315 and previous versions, OnCell 5104-HSDPA, OnCell 5104-HSPA, and OnCell 5004-HSPA. An attacker can freely use brute force to determine parameters needed to bypass authentication.
Impact
Base Score 3.x
9.80
Severity 3.x
CRITICAL
Base Score 2.0
7.50
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:moxa:oncell_g3110-hspa_firmware:*:*:*:*:*:*:*:* | 1.3 (including) | |
| cpe:2.3:h:moxa:oncell_g3110-hspa:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:moxa:oncell_g3110-hsdpa_firmware:*:*:*:*:*:*:*:* | 1.2 (including) | |
| cpe:2.3:h:moxa:oncell_g3110-hsdpa:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:moxa:oncell_g3150-hsdpa_firmware:*:*:*:*:*:*:*:* | 1.4 (including) | |
| cpe:2.3:h:moxa:oncell_g3150-hsdpa:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:moxa:oncell_5104-hsdpa_firmware:*:*:*:*:*:*:*:* | - (including) | |
| cpe:2.3:h:moxa:oncell_5104-hsdpa:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:moxa:oncell_5104-hspa_firmware:*:*:*:*:*:*:*:* | - (including) | |
| cpe:2.3:h:moxa:oncell_5104-hspa:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:moxa:oncell_5004-hspa_firmware:*:*:*:*:*:*:*:* | - (including) | |
| cpe:2.3:h:moxa:oncell_5004-hspa:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



