CVE-2020-6993

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
24/03/2020
Last modified:
26/03/2020

Description

In Moxa PT-7528 series firmware, Version 4.0 or lower, and PT-7828 series firmware, Version 3.9 or lower, an attacker can gain access to sensitive information from the web service without authorization.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:moxa:pt-7528-24tx-hv_firmware:*:*:*:*:*:*:*:* 4.0 (including)
cpe:2.3:h:moxa:pt-7528-24tx-hv:-:*:*:*:*:*:*:*
cpe:2.3:o:moxa:pt-7528-24tx-hv-hv_firmware:*:*:*:*:*:*:*:* 4.0 (including)
cpe:2.3:h:moxa:pt-7528-24tx-hv-hv:-:*:*:*:*:*:*:*
cpe:2.3:o:moxa:pt-7528-24tx-wv_firmware:*:*:*:*:*:*:*:* 4.0 (including)
cpe:2.3:h:moxa:pt-7528-24tx-wv:-:*:*:*:*:*:*:*
cpe:2.3:o:moxa:pt-7528-24tx-wv-hv_firmware:*:*:*:*:*:*:*:* 4.0 (including)
cpe:2.3:h:moxa:pt-7528-24tx-wv-hv:-:*:*:*:*:*:*:*
cpe:2.3:o:moxa:pt-7528-24tx-wv-wv_firmware:*:*:*:*:*:*:*:* 4.0 (including)
cpe:2.3:h:moxa:pt-7528-24tx-wv-wv:-:*:*:*:*:*:*:*
cpe:2.3:o:moxa:pt-7528-12msc-12tx-4gsfp-hv_firmware:*:*:*:*:*:*:*:* 4.0 (including)
cpe:2.3:h:moxa:pt-7528-12msc-12tx-4gsfp-hv:-:*:*:*:*:*:*:*
cpe:2.3:o:moxa:pt-7528-12msc-12tx-4gsfp-hv-hv_firmware:*:*:*:*:*:*:*:* 4.0 (including)
cpe:2.3:h:moxa:pt-7528-12msc-12tx-4gsfp-hv-hv:-:*:*:*:*:*:*:*
cpe:2.3:o:moxa:pt-7528-12msc-12tx-4gsfp-wv_firmware:*:*:*:*:*:*:*:* 4.0 (including)


References to Advisories, Solutions, and Tools