First published: Thu Nov 16 2017(Updated: )
An Injection issue was discovered in Moxa NPort 5110 Version 2.2, NPort 5110 Version 2.4, NPort 5110 Version 2.6, NPort 5110 Version 2.7, NPort 5130 Version 3.7 and prior, and NPort 5150 Version 3.7 and prior. An attacker may be able to inject packets that could potentially disrupt the availability of the device.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Moxa Nport 5110 Firmware | =2.2 | |
Moxa Nport 5110 Firmware | =2.4 | |
Moxa Nport 5110 Firmware | =2.6 | |
Moxa Nport 5110 Firmware | =2.7 | |
Moxa NPort 5110 | ||
Moxa Nport 5130 Firmware | <=3.7 | |
Moxa Nport 5130 | ||
Moxa Nport 5150 Firmware | <=3.7 | |
Moxa Nport 5150 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2017-16719.
CVE-2017-16719 has a severity rating of 7.5 (High).
CVE-2017-16719 affects Moxa NPort 5110 versions 2.2, 2.4, 2.6, and 2.7, NPort 5130 versions up to 3.7, and NPort 5150 versions up to 3.7.
An attacker can exploit CVE-2017-16719 by injecting packets that have the potential to disrupt the availability of the affected devices.
Yes, here are the references for CVE-2017-16719: - http://www.securityfocus.com/bid/101885 - https://ics-cert.us-cert.gov/advisories/ICSA-17-320-01