CVE-2018-18392: High severity MOXA ThingsPro vulnerability
Published Oct 19, 2018
·Updated
Privilege Escalation via Broken Access Control in Moxa ThingsPro IIoT Gateway and Device Management Software Solutions version 2.1.
Affected Software
1 affected component
MOXA ThingsPro=2.1
Event History
Oct 19, 2018
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-18392?
CVE-2018-18392 is classified as a high-severity vulnerability due to its potential for privilege escalation.
2
How do I fix CVE-2018-18392?
To address CVE-2018-18392, it is recommended to upgrade to the latest version of Moxa ThingsPro that includes the necessary security patches.
3
Which versions of Moxa ThingsPro are affected by CVE-2018-18392?
CVE-2018-18392 specifically affects Moxa ThingsPro version 2.1.
4
What type of vulnerability is CVE-2018-18392?
CVE-2018-18392 is a privilege escalation vulnerability resulting from broken access control.
5
Who is affected by CVE-2018-18392?
Organizations using Moxa ThingsPro IIoT Gateway and Device Management Software Solutions version 2.1 are vulnerable to CVE-2018-18392.