CVE-2017-16719

An Injection issue was discovered in Moxa NPort 5110 Version 2.2, NPort 5110 Version 2.4, NPort 5110 Version 2.6, NPort 5110 Version 2.7, NPort 5130 Version 3.7 and prior, and NPort 5150 Version 3.7 and prior. An attacker may be able to inject packets that could potentially disrupt the availability of the device.
References
Link Resource
https://ics-cert.us-cert.gov/advisories/ICSA-17-320-01 US Government Resource Third Party Advisory
http://www.securityfocus.com/bid/101885 Third Party Advisory VDB Entry
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:moxa:nport_5110_firmware:2.6:*:*:*:*:*:*:*
cpe:2.3:o:moxa:nport_5110_firmware:2.2:*:*:*:*:*:*:*
cpe:2.3:o:moxa:nport_5110_firmware:2.4:*:*:*:*:*:*:*
cpe:2.3:o:moxa:nport_5110_firmware:2.7:*:*:*:*:*:*:*
cpe:2.3:h:moxa:nport_5110:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:moxa:nport_5130_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:moxa:nport_5130:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:moxa:nport_5150_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:moxa:nport_5150:-:*:*:*:*:*:*:*

Information

Published : 2017-11-16 13:29

Updated : 2019-10-09 16:25


NVD link : CVE-2017-16719

Mitre link : CVE-2017-16719


JSON object : View

CWE
CWE-74

Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')

Advertisement

dedicated server usa

Products Affected

moxa

  • nport_5130
  • nport_5150
  • nport_5130_firmware
  • nport_5110_firmware
  • nport_5150_firmware
  • nport_5110