CVE-2016-9369: Critical severity MOXA Nport 5100 Series Firmware vulnerability
An issue was discovered in Moxa NPort 5110 versions prior to 2.6, NPort 5130/5150 Series versions prior to 3.6, NPort 5200 Series versions prior to 2.8, NPort 5400 Series versions prior to 3.11, NPort 5600 Series versions prior to 3.7, NPort 5100A Series & NPort P5150A versions prior to 1.3, NPort 5200A Series versions prior to 1.3, NPort 5150AI-M12 Series versions prior to 1.2, NPort 5250AI-M12 Series versions prior to 1.2, NPort 5450AI-M12 Series versions prior to 1.2, NPort 5600-8-DT Series versions prior to 2.4, NPort 5600-8-DTL Series versions prior to 2.4, NPort 6x50 Series versions prior to 1.13.11, NPort IA5450A versions prior to v1.4. Firmware can be updated over the network without authentication, which may allow remote code execution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-9369?
The severity of CVE-2016-9369 is classified as Medium, indicating potential risk to the affected systems.
How do I fix CVE-2016-9369?
To fix CVE-2016-9369, update the affected Moxa NPort devices to the specified firmware versions or later.
Which Moxa NPort devices are affected by CVE-2016-9369?
Moxa NPort 5110, 5130, 5150 Series, 5200 Series, 5400 Series, and 5600 Series are among the affected devices.
What is the impact of CVE-2016-9369 on affected systems?
CVE-2016-9369 may allow unauthorized access or impact the network communication of affected systems.
Is there a workaround for CVE-2016-9369?
Currently, the recommended action is to update the firmware of affected devices, as no official workaround is provided.