First published: Mon May 14 2018(Updated: )
A password storage vulnerability exists in the operating system functionality of Moxa EDR-810 V4.1 build 17030317. An attacker with shell access could extract passwords in clear text from the device.
Credit: talos-cna@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Moxa EDR-810 VPN 2G-SFP Firmware | =4.1 | |
Moxa EDR-810 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-12127 has a medium severity rating due to the potential for attackers to extract sensitive passwords.
To mitigate CVE-2017-12127, update the Moxa EDR-810 firmware to a secure version that addresses this vulnerability.
CVE-2017-12127 affects users of Moxa EDR-810 running firmware version 4.1 build 17030317.
An attacker requires shell access to the Moxa EDR-810 device to exploit CVE-2017-12127.
Exploitation of CVE-2017-12127 can lead to unauthorized disclosure of sensitive passwords stored in clear text.