CVE-2016-0879: High severity moxa edr-g903 firmware vulnerability
Moxa Secure Router EDR-G903 devices before 3.4.12 do not delete copies of configuration and log files after completing the import function, which allows remote attackers to obtain sensitive information by requesting these files at an unspecified URL.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-0879?
CVE-2016-0879 is classified as a high-severity vulnerability due to the potential for remote attackers to access sensitive information.
How do I fix CVE-2016-0879?
To fix CVE-2016-0879, upgrade the Moxa EDR-G903 devices to firmware version 3.4.12 or later.
What systems are affected by CVE-2016-0879?
CVE-2016-0879 affects Moxa Secure Router EDR-G903 devices running firmware versions prior to 3.4.12.
What type of information can be exposed due to CVE-2016-0879?
CVE-2016-0879 can lead to the exposure of sensitive configuration and log files.
Is there a workaround for CVE-2016-0879 if I cannot update my firmware?
There is no official workaround for CVE-2016-0879; therefore, updating to the latest firmware is the recommended approach.