Skip to main content

Vendor/product archive

moxa / mxsecurity CVEs

Beta · best-effort

9 CVEs tagged to moxa / mxsecurity2 Critical, 4 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2024-4740

Published Oct 18, 2024

MXsecurity software versions v1.1.0 and prior are vulnerable because of the use of hard-coded credentials. This vulnerability could allow an attacker to tamper with sensitive data.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-4739

Published Oct 18, 2024

The lack of access restriction to a resource from unauthorized users makes MXsecurity software versions v1.1.0 and prior vulnerable. By acquiring a valid authenticator, an attacke…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-39983

Published Sep 2, 2023

A vulnerability that poses a potential risk of polluting the MXsecurity sqlite database and the nsm-web UI has been identified in MXsecurity versions prior to v1.0.1. This vulnera…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-39982

Published Sep 2, 2023

A vulnerability has been identified in MXsecurity versions prior to v1.0.1. The vulnerability may put the confidentiality and integrity of SSH communications at risk on the affect…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-39981

Published Sep 2, 2023

A vulnerability that allows for unauthorized access has been discovered in MXsecurity versions prior to v1.0.1. This vulnerability arises from inadequate authentication measures,…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-39980

Published Sep 2, 2023

A vulnerability that allows the unauthorized disclosure of authenticated information has been identified in MXsecurity versions prior to v1.0.1. This vulnerability arises when spe…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2023-39979

Published Sep 2, 2023

There is a vulnerability in MXsecurity versions prior to 1.0.1 that can be exploited to bypass authentication. A remote attacker might access the system if the web service authent…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-33236

Published May 22, 2023

MXsecurity version 1.0 is vulnearble to hardcoded credential vulnerability. This vulnerability has been reported that can be exploited to craft arbitrary JWT tokens and subsequent…

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-33235

Published May 22, 2023

MXsecurity version 1.0 is vulnearble to command injection vulnerability. This vulnerability has been reported in the SSH CLI program, which can be exploited by attackers who have…

CVSS 7.2 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort
Showing 1-9 of 9 CVEsPage 1 of 1