First published: Thu Apr 13 2017(Updated: )
An exploitable information disclosure vulnerability exists in the Web Application functionality of Moxa AWK-3131A Wireless Access Point. Retrieving a series of URLs without authentication can reveal sensitive configuration and system information to an attacker.
Credit: talos-cna@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Moxa AWK-3131A firmware | =1.1 | |
Moxa Awk-1131A |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-8727 is classified as a moderate severity vulnerability due to its potential for information disclosure.
To mitigate CVE-2016-8727, ensure that access to the configuration URLs is restricted and that proper authentication mechanisms are in place.
CVE-2016-8727 can disclose sensitive configuration and system information to an attacker if accessed without authentication.
CVE-2016-8727 specifically impacts the Moxa AWK-3131A Wireless Access Point running firmware version 1.1.
Yes, only Moxa AWK-3131A firmware version 1.1 is known to be vulnerable to CVE-2016-8727.